# 4.7.0-0.okd-2021-04-24-103438 Created: 2021-04-24 18:32:54 +0000 UTC Image Digest: `sha256:1c71a740375b34df53c6e2bfe389018f3160cea46c4022ed6080f583c54ecbc0` Promoted from registry.ci.openshift.org/origin/release:4.7.0-0.okd-2021-04-24-103438 ## Changes from 4.7.0-0.okd-2021-03-07-090821 ### Components * Kubernetes 1.20.0-beta.2 * Fedora CoreOS 33.20210328.3 ### Rebuilt images without code change * [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal) git [25cbb8d8](https://github.com/openshift/cluster-api-provider-baremetal/commit/25cbb8d8f9e52244ccd6bf459e6dd4b84749de56) `sha256:ea6953c17668c689fef4ef59caef2db541820f3594314098aef4f8256bafeaf7` * [baremetal-operator](https://github.com/openshift/baremetal-operator) git [74c60aa9](https://github.com/openshift/baremetal-operator/commit/74c60aa957f53432d0a98afc78099add55d27c44) `sha256:f8de068a6bb16340bfe340c5a96ea72c21c171bb6ade7b78a25ae8d448513d14` * [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator) git [cf1e1a6c](https://github.com/openshift/cluster-authentication-operator/commit/cf1e1a6c79db7cf29e7de2a90ecdc458bc13059c) `sha256:4ef16b50eaabb36a4000d2d9a23bbc5e0c7708c0c991e57f62b9f4973bb5a7c9` * [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator) git [ee35da5b](https://github.com/openshift/cluster-etcd-operator/commit/ee35da5b3ee486f786d7687849d57599d46dfc2e) `sha256:0b864a5e6e5373e93e9657b25e43c66ab0355c6dfc64b6ec10cbea117e569097` * [console](https://github.com/openshift/console) git [39b08772](https://github.com/openshift/console/commit/39b08772b0fcce105c81319b796d897e358ece95) `sha256:f464762ac1a108949c4d0c501fa358c18ddb3ed2494d6cb6e64d75e2839e8137` * [docker-registry](https://github.com/openshift/image-registry) git [8e0c068a](https://github.com/openshift/image-registry/commit/8e0c068aef607fceffe3e179c3a9701f51c51dff) `sha256:f4d559435197a2061b96af198143f764c43dd59371bb3ddaf190f7f8ae5b5e0f` * [oauth-server](https://github.com/openshift/oauth-server) git [3215761a](https://github.com/openshift/oauth-server/commit/3215761a70426326f0be2ca675b0e9b9fdae341e) `sha256:828319ba81b642915b547baae2d72da16893cae8661e8f71c53ff7e594e20300` ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/2d069b7f8bf4a443ba1a7ac8f669ef05ed92a50e) * [Bug 1935636](https://bugzilla.redhat.com/show_bug.cgi?id=1935636): Ensure response body is closed when we are finished with the request [#391](https://github.com/openshift/cluster-api-provider-aws/pull/391) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/5ffc5f422a80169b342c19f50b22a0c4883cc0e3...2d069b7f8bf4a443ba1a7ac8f669ef05ed92a50e) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/4e6ac5edae9417bd673e8f37ee12f92e9d333397) * [Bug 1942488](https://bugzilla.redhat.com/show_bug.cgi?id=1942488): sort AddressesDefault by route priority, ifindex, and IPv4/IPv6 preference [#132](https://github.com/openshift/baremetal-runtimecfg/pull/132) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/7cdf5fdf6947966780a1502ef37ad9e0ac647435...4e6ac5edae9417bd673e8f37ee12f92e9d333397) ### [branding](https://github.com/openshift/origin-branding/tree/102124a8461a9abf209e8290af47a7a8313d4689) * [Bug 1935805](https://bugzilla.redhat.com/show_bug.cgi?id=1935805): Fix documentation link for OKD [#12](https://github.com/openshift/origin-branding/pull/12) * [Full changelog](https://github.com/openshift/origin-branding/compare/334347baf638f786ec1e5236def65a12c2d76586...102124a8461a9abf209e8290af47a7a8313d4689) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/95881afb5df065c250d98cf7f30ee4bb6d281acf) * [Bug 1942938](https://bugzilla.redhat.com/show_bug.cgi?id=1942938): [release-4.7] inspect clusteroperators as a backup to must-gather if it fails [#766](https://github.com/openshift/oc/pull/766) * [Bug 1924453](https://bugzilla.redhat.com/show_bug.cgi?id=1924453): Bump github.com/gogo/protobuf to v1.3.2 [#753](https://github.com/openshift/oc/pull/753) * [Bug 1942059](https://bugzilla.redhat.com/show_bug.cgi?id=1942059): when mirroring to a file destination, mount images under the index location [#779](https://github.com/openshift/oc/pull/779) * [Bug 1939477](https://bugzilla.redhat.com/show_bug.cgi?id=1939477): Fix unit test to use new IS [#769](https://github.com/openshift/oc/pull/769) * [Full changelog](https://github.com/openshift/oc/compare/c66c03f3012a10f16eb86fdce6330433adf6c9ee...95881afb5df065c250d98cf7f30ee4bb6d281acf) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/2aec1a53520e4fc9f8def5bd040e3eca917e3d02) * [Bug 1928151](https://bugzilla.redhat.com/show_bug.cgi?id=1928151): spell fix user-visible string [#301](https://github.com/openshift/cloud-credential-operator/pull/301) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/0427557ed7300864ae0068b92c4c8bfee1629b3b...2aec1a53520e4fc9f8def5bd040e3eca917e3d02) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/ac544d46b0f4aa100e40336d87ec069eca335323) * Updating vertical-pod-autoscaler builder & base images to be consistent with ART [#190](https://github.com/openshift/kubernetes-autoscaler/pull/190) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/7f1d0ad0b53d17879034597d97dac23c9a23dbcb...ac544d46b0f4aa100e40336d87ec069eca335323) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/175f8f5283faebd81fb9d1fb2915eb2682622e1e) * [Bug 1936544](https://bugzilla.redhat.com/show_bug.cgi?id=1936544): Inject proxy environment variables everywhere [#117](https://github.com/openshift/cluster-baremetal-operator/pull/117) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/ea1ff11f6cd33532bd3f3cdd7e010e97de0fcd04...175f8f5283faebd81fb9d1fb2915eb2682622e1e) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/0dd9bae28a315233ceddcb82cd2332ef7f7614cd) * [Bug 1942228](https://bugzilla.redhat.com/show_bug.cgi?id=1942228): Fix spurious reconciliation of DNS daemonset and service [#250](https://github.com/openshift/cluster-dns-operator/pull/250) * [Bug 1943826](https://bugzilla.redhat.com/show_bug.cgi?id=1943826): Corefile: Use 30 second max TTL for caching of negative responses [#254](https://github.com/openshift/cluster-dns-operator/pull/254) * [Bug 1937089](https://bugzilla.redhat.com/show_bug.cgi?id=1937089): Configure CoreDNS to shut down gracefully [#247](https://github.com/openshift/cluster-dns-operator/pull/247) * [Bug 1936587](https://bugzilla.redhat.com/show_bug.cgi?id=1936587): Set CoreDNS's cache's maximum TTL to 900 seconds [#245](https://github.com/openshift/cluster-dns-operator/pull/245) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/b37ee1578d3c2a2b0e32723a17a818174662236a...0dd9bae28a315233ceddcb82cd2332ef7f7614cd) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/1d9717b7624acee5c40d9a2f6bffbf7e628fd23d) * [Bug 1937214](https://bugzilla.redhat.com/show_bug.cgi?id=1937214): Fix spurious reconciliation of NodePort services [#570](https://github.com/openshift/cluster-ingress-operator/pull/570) * [Bug 1935891](https://bugzilla.redhat.com/show_bug.cgi?id=1935891): Canary: Perform canary test probes over https [#566](https://github.com/openshift/cluster-ingress-operator/pull/566) * [Bug 1936093](https://bugzilla.redhat.com/show_bug.cgi?id=1936093): Canary: Use cluster-wide proxy for canary client [#568](https://github.com/openshift/cluster-ingress-operator/pull/568) * [Bug 1934904](https://bugzilla.redhat.com/show_bug.cgi?id=1934904): Canary: Schedule canary server pods to worker and infra nodes [#564](https://github.com/openshift/cluster-ingress-operator/pull/564) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/c7625965839fe53059df5ea3224a867554bf6b86...1d9717b7624acee5c40d9a2f6bffbf7e628fd23d) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1041](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1041) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/60dc437fe7f19ea91be6900e5e4974d7dadbeb11...099c6afa1f8b4fe7654207f7eabd7784b42ce2e3) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/281590936f3a94d4ae1eb008709fda6614fe763b) * [Bug 1924488](https://bugzilla.redhat.com/show_bug.cgi?id=1924488): Bump github.com/gogo/protobuf to v1.3.2 [#508](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/508) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/d95b6453169b9a43d01e939f060919d2a7a6e94f...281590936f3a94d4ae1eb008709fda6614fe763b) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/b2204ca23a57e9f01af915375e6a18fc86ffecda) * [Bug 1924490](https://bugzilla.redhat.com/show_bug.cgi?id=1924490): Bump github.com/gogo/protobuf to v1.3.2 [#334](https://github.com/openshift/cluster-kube-scheduler-operator/pull/334) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/776a21927cdedf968dd368638c14b7ba998dbe65...b2204ca23a57e9f01af915375e6a18fc86ffecda) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/54484757581ec26f178c599215715bafd6029582) * Updating ose-cluster-kube-storage-version-migrator-operator builder & base images to be consistent with ART [#38](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/38) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/572caa117777db92d52564290522be3489f40074...54484757581ec26f178c599215715bafd6029582) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/6f49a9facf8b2764fa4c1482624fa1f7762e41ed) * Updating ose-cluster-machine-approver builder & base images to be consistent with ART [#103](https://github.com/openshift/cluster-machine-approver/pull/103) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/72a4740ff38e9c924d0f7cd760b6b5fd85283242...6f49a9facf8b2764fa4c1482624fa1f7762e41ed) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/da421b0e3c3362771e8d91befdd934ac09697db1) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): Revert "Bug 1934516: [4.7]: jsonnet/prometheus.jsonnet: Apply system-cluster-critical class to cluster Prometheus " [#1103](https://github.com/openshift/cluster-monitoring-operator/pull/1103) * [Bug 1945851](https://bugzilla.redhat.com/show_bug.cgi?id=1945851): Backport Remove the "instance" and "pod" labels for kube-state-metrics metrics [#1101](https://github.com/openshift/cluster-monitoring-operator/pull/1101) * [Bug 1926876](https://bugzilla.redhat.com/show_bug.cgi?id=1926876): pkg/manifests: fix prometheus-proxy trustedCA [#1051](https://github.com/openshift/cluster-monitoring-operator/pull/1051) * [Bug 1932820](https://bugzilla.redhat.com/show_bug.cgi?id=1932820): Remove kube-apiserver-availability.rules [#1069](https://github.com/openshift/cluster-monitoring-operator/pull/1069) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/dea798c5e45e05b431f203bb382fd06bafb88f6d...da421b0e3c3362771e8d91befdd934ac09697db1) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/01c8bd041411bcae01abcee6c9201337742ebd7f) * [Bug 1936719](https://bugzilla.redhat.com/show_bug.cgi?id=1936719): OSD-6600 network-metrics missing priorityClass [#1007](https://github.com/openshift/cluster-network-operator/pull/1007) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#1050](https://github.com/openshift/cluster-network-operator/pull/1050) * [Bug 1941212](https://bugzilla.redhat.com/show_bug.cgi?id=1941212): The Multus daemonset should handle 10% maxUnavailable [#1030](https://github.com/openshift/cluster-network-operator/pull/1030) * [Bug 1940806](https://bugzilla.redhat.com/show_bug.cgi?id=1940806): OVN Upgrade: fix upgrade order of node and master [#1029](https://github.com/openshift/cluster-network-operator/pull/1029) * [Bug 1929371](https://bugzilla.redhat.com/show_bug.cgi?id=1929371): Don't set ClusterOperator Version until rollout is complete [#983](https://github.com/openshift/cluster-network-operator/pull/983) * [Bug 1937829](https://bugzilla.redhat.com/show_bug.cgi?id=1937829): Cherry-pick dual stack migration [#1017](https://github.com/openshift/cluster-network-operator/pull/1017) * [Bug 1928028](https://bugzilla.redhat.com/show_bug.cgi?id=1928028): Kuryr: Let Kuryr autodetect primary CNI interface [#978](https://github.com/openshift/cluster-network-operator/pull/978) * [Bug 1935473](https://bugzilla.redhat.com/show_bug.cgi?id=1935473): Include LB members for Machines created on day-2 operation [#1002](https://github.com/openshift/cluster-network-operator/pull/1002) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/2cf98811eba874f02a2bdcb73844549a454cae8d...01c8bd041411bcae01abcee6c9201337742ebd7f) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/78e1417e306a54b589c5cfce659f672a74bc0456) * [Bug 1928614](https://bugzilla.redhat.com/show_bug.cgi?id=1928614): Keep ignition units in sync with [service] plugin. [#215](https://github.com/openshift/cluster-node-tuning-operator/pull/215) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/24392937d275074c73294d3e02ea71b2f1e16299...78e1417e306a54b589c5cfce659f672a74bc0456) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/e9dac4b23fb59c58a34d8d6533dd6bc1b6939ea3) * [Bug 1927321](https://bugzilla.redhat.com/show_bug.cgi?id=1927321): competing connectivitycheckcontrollers cause pod restarts during upgrades [#444](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/444) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/3e7d4b41ef5c311b1bdc58490bdf5b5655cfa22c...e9dac4b23fb59c58a34d8d6533dd6bc1b6939ea3) ### [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator/tree/245005e3065238ecd4aef208c21456afa09ec38e) * [Bug 1944142](https://bugzilla.redhat.com/show_bug.cgi?id=1944142): Bump kubernetes to 0.20.5 [#204](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/204) * [Bug 1931856](https://bugzilla.redhat.com/show_bug.cgi?id=1931856): Set registry routes in operand config [#199](https://github.com/openshift/cluster-openshift-controller-manager-operator/pull/199) * [Full changelog](https://github.com/openshift/cluster-openshift-controller-manager-operator/compare/7d311b378ea9ccbf486a9fea9bce8ef53345c5ef...245005e3065238ecd4aef208c21456afa09ec38e) ### [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller/tree/42791bac64066daac0922b3d77e4bd86edae3b4e) * [Bug 1924496](https://bugzilla.redhat.com/show_bug.cgi?id=1924496): Bump github.com/gogo/protobuf to v1.3.2 [#58](https://github.com/openshift/cluster-policy-controller/pull/58) * [Full changelog](https://github.com/openshift/cluster-policy-controller/compare/3ca5e1497a1d77b5337701087b4bdbcd81283f9f...42791bac64066daac0922b3d77e4bd86edae3b4e) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/257793946a0655f7af4597c3b7da2de2b4249702) * [Bug 1950808](https://bugzilla.redhat.com/show_bug.cgi?id=1950808): add DeepCopy to avoid SharedInformer cache mutation [#370](https://github.com/openshift/cluster-samples-operator/pull/370) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/c283ca0858ce3a6bc7e64f2b7d1c3e61cc351aab...257793946a0655f7af4597c3b7da2de2b4249702) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/41d14d4c27e274b236426ef80d2144cf46ded532) * [Bug 1919356](https://bugzilla.redhat.com/show_bug.cgi?id=1919356): Add IBM Cloud managed annotations to CVO manifests [#24](https://github.com/openshift/cluster-update-keys/pull/24) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/75a97e9bf5e9101f547be7bf3bb2310836e18837...41d14d4c27e274b236426ef80d2144cf46ded532) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/1db886781f4e1f18965e60d89da80ec1d677228b) * [Bug 1943754](https://bugzilla.redhat.com/show_bug.cgi?id=1943754): Ensure automountServiceAccountToken is synced on service account updates [#539](https://github.com/openshift/cluster-version-operator/pull/539) * [Bug 1941217](https://bugzilla.redhat.com/show_bug.cgi?id=1941217): pkg/cvo/sync_worker: Skip precreation of baremetal ClusterOperator [#534](https://github.com/openshift/cluster-version-operator/pull/534) * [Bug 1926795](https://bugzilla.redhat.com/show_bug.cgi?id=1926795): install/0000_90_cluster-version-operator_02_servicemonitor.yaml: adjust "CannotRetrieveUpdates" to "warning" [#516](https://github.com/openshift/cluster-version-operator/pull/516) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/cf0e3d15edd16777dac91e894af733b1e245d53c...1db886781f4e1f18965e60d89da80ec1d677228b) ### [console-operator](https://github.com/openshift/console-operator/tree/4f933d59784bd37216466ca329ea51fc797b99a1) * [Bug 1936337](https://bugzilla.redhat.com/show_bug.cgi?id=1936337): Check for error when generating default and user-defined config for the console-config configmap [#512](https://github.com/openshift/console-operator/pull/512) * [Full changelog](https://github.com/openshift/console-operator/compare/c1efdfc6294cd32c071142da770b9410a97aff3c...4f933d59784bd37216466ca329ea51fc797b99a1) ### [csi-driver-manila, openstack-cinder-csi-driver](https://github.com/openshift/cloud-provider-openstack/tree/5202bfdc042bafa732f19dcbec31ca6137fa3fa4) * [Bug 1933659](https://bugzilla.redhat.com/show_bug.cgi?id=1933659): Add udev to the driver image [#47](https://github.com/openshift/cloud-provider-openstack/pull/47) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/7def9722bc0c3c34336ceee8331eee27ec3f4c7f...5202bfdc042bafa732f19dcbec31ca6137fa3fa4) ### [docker-builder](https://github.com/openshift/builder/tree/df50aa9a4dd8e378d77c398b4d5c55211b9d14ba) * [Bug 1943726](https://bugzilla.redhat.com/show_bug.cgi?id=1943726): add bracket logging on openshift/builder calls into buildah to assist test-platform team triage [#237](https://github.com/openshift/builder/pull/237) * [Bug 1945692](https://bugzilla.redhat.com/show_bug.cgi?id=1945692): move entitlement related secrets back to mounts.conf [#240](https://github.com/openshift/builder/pull/240) * [Bug 1924554](https://bugzilla.redhat.com/show_bug.cgi?id=1924554): bump(cni) 0.8.1 [#234](https://github.com/openshift/builder/pull/234) * [Bug 1940052](https://bugzilla.redhat.com/show_bug.cgi?id=1940052): retry image pulls during builds [#226](https://github.com/openshift/builder/pull/226) * [Bug 1939218](https://bugzilla.redhat.com/show_bug.cgi?id=1939218): bump(containers/*): [#224](https://github.com/openshift/builder/pull/224) * [Full changelog](https://github.com/openshift/builder/compare/67e88c5fafb9c49f228f48810e34af07db9581f0...df50aa9a4dd8e378d77c398b4d5c55211b9d14ba) ### [etcd](https://github.com/openshift/etcd/tree/45b6800c4fab213e7afee1e406abe48cc14ee020) * [ETCD-178](https://issues.redhat.com/browse/ETCD-178): Bug 1944386: openshift-tools: fix on off flow and add unit tests [#74](https://github.com/openshift/etcd/pull/74) * [Full changelog](https://github.com/openshift/etcd/compare/cca97c76b915b1d14abd39814995fa1e2d087145...45b6800c4fab213e7afee1e406abe48cc14ee020) ### [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/7215497c95a43c5f633bc511e3e85dd1d956a931) * [Bug 1935636](https://bugzilla.redhat.com/show_bug.cgi?id=1935636): Ensure response body is closed when we are finished with the request [#151](https://github.com/openshift/cluster-api-provider-gcp/pull/151) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/186b21520ddb0f1e29d3a709715369135fcaebcd...7215497c95a43c5f633bc511e3e85dd1d956a931) ### [grafana](https://github.com/openshift/grafana/tree/b02c35dc2d01fce696a3edc28839a9f9fd0150a3) * Updating grafana builder & base images to be consistent with ART [#54](https://github.com/openshift/grafana/pull/54) * [Full changelog](https://github.com/openshift/grafana/compare/cf0a81cb4b68a2543249def193e1b83e94734725...b02c35dc2d01fce696a3edc28839a9f9fd0150a3) ### [haproxy-router](https://github.com/openshift/router/tree/130b5993726c46e83ca871a97a930d73f2c433a8) * [Bug 1942534](https://bugzilla.redhat.com/show_bug.cgi?id=1942534): [4.7 backport] Route gets admitted with invalid host name if override annotation is used [#273](https://github.com/openshift/router/pull/273) * [Bug 1938921](https://bugzilla.redhat.com/show_bug.cgi?id=1938921): router/template: Cache compiled regular expressions [#269](https://github.com/openshift/router/pull/269) * [Full changelog](https://github.com/openshift/router/compare/30e2fb5b65753e6b6593f61b16768a5229b5bd97...130b5993726c46e83ca871a97a930d73f2c433a8) ### [hello-openshift, tests](https://github.com/openshift/origin/tree/17e0bb8eadaee7e8bd2a2cb87720f6b871feade2) * [Bug 1942055](https://bugzilla.redhat.com/show_bug.cgi?id=1942055): upgrade/upgrade.go: Enhance upgrade ack time out error [#26012](https://github.com/openshift/origin/pull/26012) * [Bug 1941574](https://bugzilla.redhat.com/show_bug.cgi?id=1941574): test/extended/router/idle: skip test on virt platforms [#25999](https://github.com/openshift/origin/pull/25999) * [Bug 1940866](https://bugzilla.redhat.com/show_bug.cgi?id=1940866): Add BareMetalPlatformType into e2e upgrade service unsupported list [#25989](https://github.com/openshift/origin/pull/25989) * [Bug 1927953](https://bugzilla.redhat.com/show_bug.cgi?id=1927953): test/extended/router/idle: address flakes/failures seen in CI [#25892](https://github.com/openshift/origin/pull/25892) * [Bug 1931622](https://bugzilla.redhat.com/show_bug.cgi?id=1931622): test: add vsphere to unsupported platforms for LB service [#25913](https://github.com/openshift/origin/pull/25913) * [Bug 1932806](https://bugzilla.redhat.com/show_bug.cgi?id=1932806): release-4.7: e2e: test OAuth API connections in the tests by that name [#25894](https://github.com/openshift/origin/pull/25894) * [Bug 1935707](https://bugzilla.redhat.com/show_bug.cgi?id=1935707): [release-4.7] test: Detect when the master pool is still updating after upgrade [#25941](https://github.com/openshift/origin/pull/25941) * [Bug 1931401](https://bugzilla.redhat.com/show_bug.cgi?id=1931401): fix sig-cli flakes [#25910](https://github.com/openshift/origin/pull/25910) * [Bug 1939477](https://bugzilla.redhat.com/show_bug.cgi?id=1939477): Update tests to use Ruby 2.7 [#25966](https://github.com/openshift/origin/pull/25966) * [Bug 1927554](https://bugzilla.redhat.com/show_bug.cgi?id=1927554): adjust route host for redis/nodejs/cakephp to accomodate new apiserver restrictions [#25884](https://github.com/openshift/origin/pull/25884) * [Full changelog](https://github.com/openshift/origin/compare/98a759fa802ab87153d0c75b18bc977a91154f69...17e0bb8eadaee7e8bd2a2cb87720f6b871feade2) ### [hyperkube](https://github.com/openshift/kubernetes/tree/7d0a2b269a27413f5f125d30c9d726684886c69a) * [Bug 1945856](https://bugzilla.redhat.com/show_bug.cgi?id=1945856): 99729:Only system-node-critical pods should be OOM Killed last [#642](https://github.com/openshift/kubernetes/pull/642) * [Bug 1927717](https://bugzilla.redhat.com/show_bug.cgi?id=1927717): UPSTREAM: 98939: fixes race in TestSyncPodsDeletesWhenSourcesAreReady [#567](https://github.com/openshift/kubernetes/pull/567) * [Bug 1931702](https://bugzilla.redhat.com/show_bug.cgi?id=1931702): UPSTREAM: 96958: kubelet: remove periodic messages from log-level 2 [#589](https://github.com/openshift/kubernetes/pull/589) * [Bug 1931745](https://bugzilla.redhat.com/show_bug.cgi?id=1931745): UPSTREAM: 98956: Fix race when KillPod followed by IsPodPendingTermining [#590](https://github.com/openshift/kubernetes/pull/590) * [Bug 1929674](https://bugzilla.redhat.com/show_bug.cgi?id=1929674): kubelet: fix create sandbox delete pod race [#591](https://github.com/openshift/kubernetes/pull/591) * [Bug 1933094](https://bugzilla.redhat.com/show_bug.cgi?id=1933094): UPSTREAM: 98742: Sync completed pods until their containers have been terminated [#595](https://github.com/openshift/kubernetes/pull/595) * [Full changelog](https://github.com/openshift/kubernetes/compare/5fbfd197c16d3c5facbaa1d7b9f3ea58cf6b36e9...7d0a2b269a27413f5f125d30c9d726684886c69a) ### [insights-operator](https://github.com/openshift/insights-operator/tree/23a298922d25de761c8f765625d6ebb63a25774e) * [Bug 1942068](https://bugzilla.redhat.com/show_bug.cgi?id=1942068): Gahter datahubs.installers.datahub.sap.com resources from SAP clusters (#383) [#383](https://github.com/openshift/insights-operator/pull/383) * [Bug 1939061](https://bugzilla.redhat.com/show_bug.cgi?id=1939061): Sap license management logs gatherer 4.7 (#372) [#372](https://github.com/openshift/insights-operator/pull/372) * Adds memory usage to the metadata (#364) [#364](https://github.com/openshift/insights-operator/pull/364) * [Bug 1935070](https://bugzilla.redhat.com/show_bug.cgi?id=1935070): Extend the OLM operator data with related … (#362) [#362](https://github.com/openshift/insights-operator/pull/362) * [Bug 1934442](https://bugzilla.redhat.com/show_bug.cgi?id=1934442): Gather info about unhealthy SAP pods (#360) [#360](https://github.com/openshift/insights-operator/pull/360) * [Bug 1936802](https://bugzilla.redhat.com/show_bug.cgi?id=1936802): Authentication log gatherer - do not scan all the pods in openshfit-authentication (#369) [#369](https://github.com/openshift/insights-operator/pull/369) * [Bug 1936861](https://bugzilla.redhat.com/show_bug.cgi?id=1936861): Include namespace name in binarydata configmap path & test (#368) (#370) [#368](https://github.com/openshift/insights-operator/pull/368) * [Full changelog](https://github.com/openshift/insights-operator/compare/4d0bc3a840b801b18270ff614678bacad65d93b8...23a298922d25de761c8f765625d6ebb63a25774e) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/503e5770e622bf78a746628a8b276a2616365135) * [release 4.7] Bug 1929118: update kubernetes-client-api [#1230](https://github.com/openshift/jenkins/pull/1230) * [Full changelog](https://github.com/openshift/jenkins/compare/41fc44729e398eac8a06c8222cf653c80f125a2c...503e5770e622bf78a746628a8b276a2616365135) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/2310aee1ebfca13a25162f754908e35aa1550d6d) * [Bug 1941993](https://bugzilla.redhat.com/show_bug.cgi?id=1941993): Fix incorrect unmonitoring of egress nodes [#279](https://github.com/openshift/sdn/pull/279) * [Bug 1924830](https://bugzilla.redhat.com/show_bug.cgi?id=1924830): CVE-2021-3121 gogo/protobuf lacks certain index validation [#265](https://github.com/openshift/sdn/pull/265) * [Bug 1936920](https://bugzilla.redhat.com/show_bug.cgi?id=1936920): networkpolicy: pass traffic through NAT to handle possible tuple collisions [#272](https://github.com/openshift/sdn/pull/272) * [Full changelog](https://github.com/openshift/sdn/compare/3acf8c465a21c23acb62c50de1aee40f717bf528...2310aee1ebfca13a25162f754908e35aa1550d6d) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/d49acc455c98dead4995e34add0bf9f3e6e7324b) * [Bug 1938960](https://bugzilla.redhat.com/show_bug.cgi?id=1938960): Ignore headless services in NP code [#487](https://github.com/openshift/kuryr-kubernetes/pull/487) * [Bug 1938960](https://bugzilla.redhat.com/show_bug.cgi?id=1938960): Do not default protocol to TCP for allow-all NPs [#480](https://github.com/openshift/kuryr-kubernetes/pull/480) * [Bug 1930017](https://bugzilla.redhat.com/show_bug.cgi?id=1930017): Narrow connection to the cluster only on namespaceSelector [#460](https://github.com/openshift/kuryr-kubernetes/pull/460) * [Bug 1928029](https://bugzilla.redhat.com/show_bug.cgi?id=1928029): Get trunks more diligently [#449](https://github.com/openshift/kuryr-kubernetes/pull/449) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/a31d885264e7a68ff49b6baa96bb5868dae9e5a3...d49acc455c98dead4995e34add0bf9f3e6e7324b) ### [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt/tree/033be25ca038fe773b23c076e9ac64926de72474) * [Bug 1938316](https://bugzilla.redhat.com/show_bug.cgi?id=1938316): [release-4.7] Update MAO and set metrics on :8081 address [#219](https://github.com/openshift/cluster-api-provider-libvirt/pull/219) * [Full changelog](https://github.com/openshift/cluster-api-provider-libvirt/compare/b57e18b197838f6d6c377cca00fd47f9af645f3f...033be25ca038fe773b23c076e9ac64926de72474) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/a00ea96d676b2b87a7de6f8ad2cac09ed2f14c67) * [Bug 1929721](https://bugzilla.redhat.com/show_bug.cgi?id=1929721): Add SecurityProfile.EncryptionAtHost parameter to enable host-based VM encryption [#818](https://github.com/openshift/machine-api-operator/pull/818) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/13126c309bc4f2cd535f536c6925e245a44ac649...a00ea96d676b2b87a7de6f8ad2cac09ed2f14c67) ### [machine-os-content](https://github.com/openshift/okd-machine-os/tree/570737f3da52045a7082d24effea2f95272524ef) * Strip xattrs [#112](https://github.com/openshift/okd-machine-os/pull/112) * overlay: add NetworkManager config to prevent requesting additional MAC [#109](https://github.com/openshift/okd-machine-os/pull/109) * overlay: add dhcp-client-identifier [#101](https://github.com/openshift/okd-machine-os/pull/101) * manifests: add include.release annotations [#98](https://github.com/openshift/okd-machine-os/pull/98) * [Full changelog](https://github.com/openshift/okd-machine-os/compare/421333e9f658dcca306b5207d9e4169a2785e42a...570737f3da52045a7082d24effea2f95272524ef) ### [multus-cni](https://github.com/openshift/multus-cni/tree/5530094db7607fc9292e3b269fcf5a85b0dad3df) * [Bug 1927896](https://bugzilla.redhat.com/show_bug.cgi?id=1927896): make a copy of global RuntimeConfig on merge [#91](https://github.com/openshift/multus-cni/pull/91) * [Bug 1936334](https://bugzilla.redhat.com/show_bug.cgi?id=1936334): Updating multus-cni builder & base images to be consistent with ART [#81](https://github.com/openshift/multus-cni/pull/81) * [Full changelog](https://github.com/openshift/multus-cni/compare/7aa53b3cb5ae0ae4b03906803c7aff37447d4357...5530094db7607fc9292e3b269fcf5a85b0dad3df) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/dfe6b395b67c0cede73e6edf758976ae208b930c) * [Bug 1931950](https://bugzilla.redhat.com/show_bug.cgi?id=1931950): [backport 4.7] Fix for IPv6 when leading hextets equal zero [#49](https://github.com/openshift/whereabouts-cni/pull/49) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/900aa4231bd31026b3a305f8077c8959f51d8059...dfe6b395b67c0cede73e6edf758976ae208b930c) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/69f527e90f599e0f509cfce73ba7b95656f03f7f) * [Bug 1917904](https://bugzilla.redhat.com/show_bug.cgi?id=1917904): bump k8s.io/apiserver to 1.20.4 [#43](https://github.com/openshift/oauth-apiserver/pull/43) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/d00e67a0b5e0d7c303b201a5bbcb943a9bc26774...69f527e90f599e0f509cfce73ba7b95656f03f7f) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/a0f41548179e57e9b184a3e713ac6227cc4385ff) * [Bug 1917904](https://bugzilla.redhat.com/show_bug.cgi?id=1917904): bump k8s.io/apiserver to 1.20.4 [#187](https://github.com/openshift/openshift-apiserver/pull/187) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/d7ccc71549d84594bfc7f5deda2ed61de7bde100...a0f41548179e57e9b184a3e713ac6227cc4385ff) ### [operator-lifecycle-manager](https://github.com/operator-framework/operator-lifecycle-manager/tree/cdf51cddb619e84e2ce5be78ab2d7e7f6d748ec6) * [Bug 1947909](https://bugzilla.redhat.com/show_bug.cgi?id=1947909): Do not adopt copied CSVs [#2089](https://github.com/operator-framework/operator-lifecycle-manager/pull/2089) * [Bug 1937375](https://bugzilla.redhat.com/show_bug.cgi?id=1937375): only override deployment resources when explicitly defined in subscription config [#2036](https://github.com/operator-framework/operator-lifecycle-manager/pull/2036) * [Bug 1933839](https://bugzilla.redhat.com/show_bug.cgi?id=1933839): bump k8s.io/apiserver for webhook authorizer panic fix [#2022](https://github.com/operator-framework/operator-lifecycle-manager/pull/2022) * [Bug 1936707](https://bugzilla.redhat.com/show_bug.cgi?id=1936707): Allow non-CSV-owned ServiceAccounts to satisfy CSV requirements. [#2034](https://github.com/operator-framework/operator-lifecycle-manager/pull/2034) * [Bug 1938405](https://bugzilla.redhat.com/show_bug.cgi?id=1938405): Support jittering relatively small resync intervals. [#2041](https://github.com/operator-framework/operator-lifecycle-manager/pull/2041) * Updating operator-lifecycle-manager builder & base images to be consistent with ART [#2013](https://github.com/operator-framework/operator-lifecycle-manager/pull/2013) * [Bug 1934724](https://bugzilla.redhat.com/show_bug.cgi?id=1934724): fix(resolver): Allow skipped versions to be installed initially [#2027](https://github.com/operator-framework/operator-lifecycle-manager/pull/2027) * [Bug 1929904](https://bugzilla.redhat.com/show_bug.cgi?id=1929904): Infer package name property for unannotated CSVs, if possible. [#2033](https://github.com/operator-framework/operator-lifecycle-manager/pull/2033) * [Full changelog](https://github.com/operator-framework/operator-lifecycle-manager/compare/45ee0b4e47b9cac58c14892f998307a73ab46879...cdf51cddb619e84e2ce5be78ab2d7e7f6d748ec6) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/96bab9b9f5bb2c8fce141992230cf75e48f14f78) * Updating marketplace-operator builder & base images to be consistent with ART [#367](https://github.com/operator-framework/operator-marketplace/pull/367) * [Bug 1927456](https://bugzilla.redhat.com/show_bug.cgi?id=1927456): update defaults to 4.7 [#382](https://github.com/operator-framework/operator-marketplace/pull/382) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/37d14d1aaaba2cd223469b5d4b2513c1292151a9...96bab9b9f5bb2c8fce141992230cf75e48f14f78) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/01b9bf8368a3da974bf1c9114c618a548d346acd) * [Bug 1939358](https://bugzilla.redhat.com/show_bug.cgi?id=1939358): extract node machine ipaddress from the engine instead using DNS . [#98](https://github.com/openshift/cluster-api-provider-ovirt/pull/98) * [Bug 1939360](https://bugzilla.redhat.com/show_bug.cgi?id=1939360): providerIDController ignore nodes that have no machine [#99](https://github.com/openshift/cluster-api-provider-ovirt/pull/99) * [Bug 1939199](https://bugzilla.redhat.com/show_bug.cgi?id=1939199): move to go 1.15 and registry.ci.openshift.org [#97](https://github.com/openshift/cluster-api-provider-ovirt/pull/97) * [Bug 1927256](https://bugzilla.redhat.com/show_bug.cgi?id=1927256): Bump K8s dependencies to 1.20 [#92](https://github.com/openshift/cluster-api-provider-ovirt/pull/92) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/4708c8bbbf01634892f4699dedb3d7a34392903b...01b9bf8368a3da974bf1c9114c618a548d346acd) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/7d1d12fd4ca2206b19cecf61f4b1cb41d8251339) * [Bug 1951552](https://bugzilla.redhat.com/show_bug.cgi?id=1951552): master: Delay deleting Namespace's address set for 20 seconds [#507](https://github.com/openshift/ovn-kubernetes/pull/507) * [Bug 1950432](https://bugzilla.redhat.com/show_bug.cgi?id=1950432): [4.7] pods: bind pod logical switch ports to the node's chassis with requested-chassis [#503](https://github.com/openshift/ovn-kubernetes/pull/503) * [Bug 1924826](https://bugzilla.redhat.com/show_bug.cgi?id=1924826): Backport Update gogo/protobuf to v1.3.2. [#464](https://github.com/openshift/ovn-kubernetes/pull/464) * [Bug 1943316](https://bugzilla.redhat.com/show_bug.cgi?id=1943316): [4.7] master: enable logical datapath groups for OVN >= 20.12 [#478](https://github.com/openshift/ovn-kubernetes/pull/478) * [Bug 1946696](https://bugzilla.redhat.com/show_bug.cgi?id=1946696): iptables: add filter on node local traffic [#489](https://github.com/openshift/ovn-kubernetes/pull/489) * [Bug 1947835](https://bugzilla.redhat.com/show_bug.cgi?id=1947835): Fix service update for policy type assertion [#493](https://github.com/openshift/ovn-kubernetes/pull/493) * [Bug 1942702](https://bugzilla.redhat.com/show_bug.cgi?id=1942702): backport lr-nat-del/add fixes [#484](https://github.com/openshift/ovn-kubernetes/pull/484) * [Bug 1931520](https://bugzilla.redhat.com/show_bug.cgi?id=1931520): Backport Fix ACL syntax for dual-stack [#465](https://github.com/openshift/ovn-kubernetes/pull/465) * [Bug 1943310](https://bugzilla.redhat.com/show_bug.cgi?id=1943310): [4.7] Enable DB memory trimming on compaction [#477](https://github.com/openshift/ovn-kubernetes/pull/477) * [Bug 1932268](https://bugzilla.redhat.com/show_bug.cgi?id=1932268): detect if the cluster has endpoint slices [#442](https://github.com/openshift/ovn-kubernetes/pull/442) * [Bug 1935180](https://bugzilla.redhat.com/show_bug.cgi?id=1935180): Backport Fix mcast querier [#468](https://github.com/openshift/ovn-kubernetes/pull/468) * [Bug 1937829](https://bugzilla.redhat.com/show_bug.cgi?id=1937829): Cherry-pick dual-stack conversion [#460](https://github.com/openshift/ovn-kubernetes/pull/460) * [Bug 1934645](https://bugzilla.redhat.com/show_bug.cgi?id=1934645): Backport enable support for BFD on external gateway routes [#462](https://github.com/openshift/ovn-kubernetes/pull/462) * [Bug 1925475](https://bugzilla.redhat.com/show_bug.cgi?id=1925475): Bump OVN to ovn2.13-20.12.0-24.el8fdp [#451](https://github.com/openshift/ovn-kubernetes/pull/451) * [Bug 1937238](https://bugzilla.redhat.com/show_bug.cgi?id=1937238): Refactor chain setup for NodePort and ExternalIP [#457](https://github.com/openshift/ovn-kubernetes/pull/457) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/ef03521f5daede4fe0f8afd9f42035259636006b...7d1d12fd4ca2206b19cecf61f4b1cb41d8251339) ### [prom-label-proxy](https://github.com/openshift/prom-label-proxy/tree/db87872c6aba7e4e9def29b33beea582557ce940) * Updating prom-label-proxy builder & base images to be consistent with ART [#330](https://github.com/openshift/prom-label-proxy/pull/330) * [Full changelog](https://github.com/openshift/prom-label-proxy/compare/88d4df5541251ea122687610870e725b0099213a...db87872c6aba7e4e9def29b33beea582557ce940) ### [telemeter](https://github.com/openshift/telemeter/tree/e4dac5123ef6b3ecb16b5151e2e8f8aeb8b1f21a) * Updating telemeter builder & base images to be consistent with ART [#369](https://github.com/openshift/telemeter/pull/369) * [Full changelog](https://github.com/openshift/telemeter/compare/8742aae6505eebe6a12bffba8223a66ee5fc4a88...e4dac5123ef6b3ecb16b5151e2e8f8aeb8b1f21a) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/077d6bef3bc1e003188e0bea4e086c874f97f944) * [Bug 1936975](https://bugzilla.redhat.com/show_bug.cgi?id=1936975): Fix deadlock when enqueing functions into the pool [#35](https://github.com/openshift/vsphere-problem-detector/pull/35) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/602c27477b66fd8752b7c39a13b6b948731e60eb...077d6bef3bc1e003188e0bea4e086c874f97f944)