Release Notes v1.129
Yake release notes and upgrade guideβ
Related upstream release notes / changelogsβ
Update shoot-dns-service to 1.70.0
[github.com/gardener/gardener-extension-shoot-dns-service:v1.70.0]
π Othersβ
[OPERATOR]Fix admission helm chart OCI repository paths after renaming. by @MartinWeindel [#549]
Helm Chartsβ
- shoot-dns-service-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-application:v1.70.0 - shoot-dns-service-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-runtime:v1.70.0 - shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service:v1.70.0
Container (OCI) Imagesβ
- gardener-extension-admission-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-shoot-dns-service:v1.70.0 - gardener-extension-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-dns-service:v1.70.0
Update gardener-controlplane to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update gardener-controlplane to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update gardenlet to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update os-coreos to 1.26.0
[github.com/gardener/gardener-extension-os-coreos:v1.26.0]
π Othersβ
[OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#224][DEVELOPER]migrate pipeline to GitHub-Actions by @ccwienk [#187][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#219]
Helm Chartsβ
- os-coreos:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-coreos:v1.26.0
Container (OCI) Imagesβ
- gardener-extension-os-coreos:
europe-docker.pkg.dev/gardener-project/releases/extensions/os-coreos:v1.26.0
Update provider-azure to 1.55.0
[github.com/gardener/gardener-extension-provider-azure:v1.55.0]
β οΈ Breaking Changesβ
[OPERATOR]Refactor Feature Gates specification for the provider-extesion helm chart. Operators need to specify their deployed feature gates with their canonical name. by @kon-angelo [#1301]
β¨ New Featuresβ
[OPERATOR]This extension now supportsWorkloadIdentitys as credentials for etcd backup. by @vpnachev [#1265]
π Othersβ
[OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1266][OPERATOR]Fix a bug that disabled subnet's default outbound access. by @kon-angelo [#1290][OPERATOR]Add advanced shoot input validation by @kon-angelo [#1295]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.55.0 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.55.0 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.55.0
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.55.0 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.55.0
Update dashboard to 1.82.2
[github.com/gardener/dashboard:1.82.2]
π Bug Fixesβ
[USER]Resolved a server error that occurred when retrieving information in the About dialog by @gardener-github-actions[bot] [#2645][USER]Fixed an issue where supported regions were not correctly identified as recommended regions. This caused invalid defaulting of regions, and in cases whereseedCandidateDeterminationStrategywas set toSameRegion, the region list could incorrectly be empty by @gardener-github-actions[bot] [#2646]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.2
Update dashboard to 1.82.2
[github.com/gardener/dashboard:1.82.2]
π Bug Fixesβ
[USER]Resolved a server error that occurred when retrieving information in the About dialog by @gardener-github-actions[bot] [#2645][USER]Fixed an issue where supported regions were not correctly identified as recommended regions. This caused invalid defaulting of regions, and in cases whereseedCandidateDeterminationStrategywas set toSameRegion, the region list could incorrectly be empty by @gardener-github-actions[bot] [#2646]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.2
Update provider-gcp to 1.46.0
[github.com/gardener/gardener-extension-provider-gcp:v1.46.0]
β¨ New Featuresβ
[OPERATOR]This extension now supportsWorkloadIdentitys as credentials for etcd backup. by @vpnachev [#1151]
π Bug Fixesβ
[OPERATOR]A bug in theadmission-gcpcomponent, which was causing a nil-pointer exception in case a new in-place worker is added, is now fixed. by @shafeeqes [#1169][OPERATOR]A bug preventing all obsolete machine-controller-manager ClusterRoles and ClusterRoleBindings to be deleted on extension startup has been fixed. by @georgibaltiev [#1137]
π Othersβ
[OPERATOR]Remove unused terraformer image by @kon-angelo [#1181][OPERATOR]Update GHA for new release options by @kon-angelo [#1131][OPERATOR]Update RBAC for extensions running in the runtime cluster. by @kon-angelo [#1155][OPERATOR]Upgrade gardener dependency to v1.122.1 by @plkokanov [#1122][OPERATOR]provider-gcpno longer supports Shoots with Πubernetes version <= 1.28. by @georgibaltiev [#1123][OPERATOR]Improve user input validation for provider related fields. by @kon-angelo [#1173][OPERATOR]Upgrade gardener/gardener to v1.125.0 by @hebelsan [#1142][OPERATOR]Upgrade gardener dependency to v1.123.1 by @theoddora [#1132][OPERATOR]Deprecate obsolete role, rolebinding and serviceaccounts from terraformer by @kon-angelo [#1136][DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#1121][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1154][OPERATOR]Update csi driver filestore image from v1.10.1 to v1.11.0 by @hebelsan [#1124][OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#1165][OPERATOR]Increase node controller workers for cloud-controller-manager by @kon-angelo [#1138][OPERATOR]Update gardener/gardener to v1.127.1 by @hebelsan [#1172]
Helm Chartsβ
- admission-gcp-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-application:v1.46.0 - admission-gcp-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-runtime:v1.46.0 - provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-gcp:v1.46.0
Container (OCI) Imagesβ
- gardener-extension-admission-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-gcp:v1.46.0 - gardener-extension-provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-gcp:v1.46.0
Update provider-openstack to 1.49.0
[github.com/gardener/gardener-extension-provider-openstack:v1.49.0]
β οΈ Breaking Changesβ
[OPERATOR]Update the defaults for the infrastructure controller. Unless opted out per shoot or per seed, the infrastructure controller will now by default reconcile using the flow implementation. In future release v1.50.0 we will disable reconciliation via terraform. by @kon-angelo [#1114]
π Bug Fixesβ
[OPERATOR]A bug preventing all obsolete machine-controller-manager ClusterRoles and ClusterRoleBindings to be deleted on extension startup has been fixed. by @georgibaltiev [#1116]
π Othersβ
[OPERATOR]Remove deprecated storage class nfs-constraint-for manila-csi-driver by @hebelsan [#1131] [OPERATOR]provider-openstackno longer supports Shoots with Πubernetes version <= 1.28. by @RadaBDimitrova [#1101][OPERATOR]Update non-gardener dependencies & gardener/gardener to v1.125.1 by @hebelsan [#1127][DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#1090][OPERATOR]Upgrade gardener dependency to v1.123.1 by @theoddora [#1113][OPERATOR]Upgrade gardener dependency to v1.122.1 by @plkokanov [#1100][OPERATOR]export testresults as inlined ocm-resource by @heldkat [#1107][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1136][DEVELOPER]Separate bastion reconcile and delete options by @hebelsan [#1108][OPERATOR]Add shoot input validation by @kon-angelo [#1155][OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1139]
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.49.0 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.49.0 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.49.0
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.49.0 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.49.0
Update gardener-controlplane to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update gardener-controlplane to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update gardenlet to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update provider-aws to 1.64.0
[github.com/gardener/gardener-extension-provider-aws:v1.64.0]
β¨ New Featuresβ
[OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto use credentials of eitherv1.Secretorsecurity.gardener.cloud/v1alpha1.WorkloadIdentityby @vpnachev [#1461]
π Othersβ
[OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1460][OPERATOR]LoadBalancer services in IPv6 and dual-stack clusters can now opt out of automatic dual-stack annotations usingextensions.gardener.cloud/ignore-load-balancer: "true". by @axel7born [#1459][OPERATOR]AMI selection for workers'MachineClasssupportsCloudprofileswithCapabilities. by @Roncossek [#1458][OPERATOR]Adopts Gardener MachineImageCapabilitiesand introducesCapabilitySetsto theproviderConfig. by @Roncossek [#1306][OPERATOR]Migration from dual-stack [IPv4, IPv6] to [IPv4] networking is now allowed. by @axel7born [#1481][OPERATOR]Input validation for shoot fields by @kon-angelo [#1479][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1454][OPERATOR]Remove CPU requests for aws-extension components in Shoot and Seed. by @voelzmo [#1448][OPERATOR]Update mcm AWS image from v0.25.0 to v0.26.0 by @hebelsan [#1478]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.64.0 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.64.0 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.64.0
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.64.0 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.64.0
Update gardener-controlplane to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update gardener-controlplane to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update gardenlet to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update provider-openstack to 1.49.1
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.49.1 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.49.1 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.49.1
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.49.1 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.49.1
Update shoot-rsyslog-relp to 0.10.1
[github.com/gardener/gardener-extension-shoot-rsyslog-relp:v0.10.1]
π Bug Fixesβ
[OPERATOR]Fix casing ofroleinScrapeConfig. by @gardener-ci-robot [#314]
Helm Chartsβ
- shoot-rsyslog-relp-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-application:v0.10.1 - shoot-rsyslog-relp-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-runtime:v0.10.1 - shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp:v0.10.1
Container (OCI) Imagesβ
- gardener-extension-shoot-rsyslog-relp-admission:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp-admission:v0.10.1 - gardener-extension-shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp:v0.10.1
Update acl to 1.12.0
What's Changedβ
β οΈ Breaking Changesβ
- Drop special handling for provider-openstack by @timebertt in https://github.com/stackitcloud/gardener-extension-acl/pull/173
- Operators should ensure that the provider-openstack version is recent enough to publish
Infrastructure.status.egressCIDRsfor all clusters before upgrading to this version of this extension.
- Operators should ensure that the provider-openstack version is recent enough to publish
π€ Dependenciesβ
- Update dependency go to v1.25.1 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/166
- Update actions/setup-go action to v6 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/167
- Update module github.com/onsi/ginkgo/v2 to v2.25.3 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/168
- Update k8s packages to v0.32.9 (patch) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/169
- Update module golang.org/x/tools to v0.37.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/170
- Update k8s packages (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/149
- Update module github.com/gardener/gardener to v1.127.4 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/175
- Update k8s packages (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/176
New Contributorsβ
- @MichaelEischer made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/171
Full Changelog: https://github.com/stackitcloud/gardener-extension-acl/compare/v1.11.0...v1.12.0
Update provider-aws to 1.64.1
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.64.1 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.64.1 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.64.1
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.64.1 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.64.1
Update dashboard to 1.82.3
[github.com/gardener/dashboard:1.82.3]
π Bug Fixesβ
[USER]Added the missingcloudflare-dnsprovider to the list of supported DNS providers by @gardener-github-actions[bot] [#2667]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.3
Update dashboard to 1.82.3
[github.com/gardener/dashboard:1.82.3]
π Bug Fixesβ
[USER]Added the missingcloudflare-dnsprovider to the list of supported DNS providers by @gardener-github-actions[bot] [#2667]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.3
Update gardener-controlplane to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardener-controlplane to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardenlet to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardener-controlplane to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update gardener-controlplane to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update gardenlet to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update shoot-oidc-service to 0.33.0
[github.com/gardener/gardener-extension-shoot-oidc-service:v0.33.0]
β¨ New Featuresβ
[USER]shoot-oidc-serviceno longer supports Shoots with Πubernetes version <= 1.28. by @georgibaltiev [#340]
π Othersβ
[DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#333][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#353][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#365][OPERATOR]Test results are now exported as inlined ocm-resource. by @heldkat [#342]
Helm Chartsβ
- shoot-oidc-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-oidc-service:v0.33.0
Container (OCI) Imagesβ
- gardener-extension-shoot-oidc-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-oidc-service:v0.33.0
Update shoot-flux to 0.23.0
What's Changedβ
- π€ Update module github.com/gardener/gardener to v1.128.1 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/191
- π€ Update fluxcd (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/180
- π€ Update module github.com/gardener/gardener to v1.129.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/194
- π€ Update module github.com/onsi/ginkgo/v2 to v2.26.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/192
- π€ Update k8s and gardener packages to v0.34.1 (patch) - autoclosed by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/190
- π€ Update k8s.io/utils digest to bc988d5 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/193
Full Changelog: https://github.com/stackitcloud/gardener-extension-shoot-flux/compare/v0.22.0...v0.23.0
Update acl to 1.13.0
What's Changedβ
π€ Dependenciesβ
- Update module github.com/gardener/gardener to v1.128.3 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/177
- Update k8s.io/utils digest to bc988d5 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/179
- Update module github.com/gardener/gardener to v1.128.4 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/181
- Update module sigs.k8s.io/controller-runtime to v0.22.2 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/185
- Update dependency go to v1.25.2 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/186
- Update module github.com/onsi/ginkgo/v2 to v2.26.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/180
- Update module golang.org/x/tools to v0.38.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/187
- Update module github.com/gardener/gardener to v1.129.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/182
βΉοΈ Other Changesβ
- chore(vpa): Update the extension
VPAresources to use update modeRecreateby @vitanovs in https://github.com/stackitcloud/gardener-extension-acl/pull/178 - Add controls for Pod Security Standards
restrictedpolicy by @relusc in https://github.com/stackitcloud/gardener-extension-acl/pull/184
New Contributorsβ
- @vitanovs made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/178
- @relusc made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/184
Full Changelog: https://github.com/stackitcloud/gardener-extension-acl/compare/v1.12.0...v1.13.0
Update gardener-controlplane to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update gardener-controlplane to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update gardenlet to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update runtime-gvisor to 0.25.0
[github.com/gardener/gardener-extension-runtime-gvisor:v0.25.0]
π Othersβ
[OPERATOR]Updated gVisor binaries to 20251006.0. by @gardener-github-actions[bot] [#297][OPERATOR]It is now possible to specify runsc'spanic-signalsetting through the gVisor providerConfig. by @MrBatschner [#296]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#290]
Helm Chartsβ
- runtime-gvisor:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/runtime-gvisor:v0.25.0
Container (OCI) Imagesβ
- gardener-extension-runtime-gvisor-installation:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/runtime-gvisor-installation:v0.25.0 - gardener-extension-runtime-gvisor:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/runtime-gvisor:v0.25.0
Update shoot-cert-service to 1.54.0
[github.com/gardener/gardener-extension-shoot-cert-service:v1.54.0]
β¨ New Featuresβ
[USER]Validation for secrets of ACME issuers specified in shoot manifest is performed on reconciling the extension. Both theprivateKeysecret of the ACME issuer and the optional external account binding secret are validated for the allowed data keys and values. by @MartinWeindel [#458]
π Bug Fixesβ
[OPERATOR]Add networking policy label to allow access to virtual garden if thecontrolplane-cert-serviceextension is enabled and Garden runtime cluster and soil are the same. by @MartinWeindel [#469]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#470]
Helm Chartsβ
- shoot-cert-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-cert-service:v1.54.0
Container (OCI) Imagesβ
- gardener-extension-shoot-cert-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-cert-service:v1.54.0
Update dashboard to 1.82.4
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.4
Update dashboard to 1.82.4
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.4
Update external-dns-management to 0.29.0
[github.com/gardener/external-dns-management:v0.29.0]
β οΈ Breaking Changesβ
[USER]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645][OPERATOR]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645]
β¨ New Featuresβ
[OPERATOR]Support command line option--kubeconfig.crds-shoot-no-cleanup-labelto allow to set the labelshoot.gardener.cloud/no-cleanup=truefor deployed CRDs. by @MartinWeindel [#674]
π Bug Fixesβ
[OPERATOR][netlify-dns] Allow underscore character on validating the API token for netlify. by @MartinWeindel [#644]
π Othersβ
[OPERATOR]Migrate the workload VPA from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#671][OPERATOR]Update cloudflare-dns to use the Version 6 ofgithub.com/cloudflare/cloudflare-go/v6. by @MartinWeindel [#640][OPERATOR]Aligned zone metrics handling in Azure DNS and Azure Private DNS providers with all other DNS providers. by @marc1404 [#667][OPERATOR]Simplify build workflow, drop redundantcheckstep. by @MartinWeindel [#658]
Helm Chartsβ
- dns-controller-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/dns-controller-manager:v0.29.0
Container (OCI) Imagesβ
- dns-controller-manager:
europe-docker.pkg.dev/gardener-project/releases/dns-controller-manager:v0.29.0
Update os-gardenlinux to 0.34.0
[github.com/gardener/gardener-extension-os-gardenlinux:v0.34.0]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#301]
Helm Chartsβ
- os-gardenlinux:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-gardenlinux:v0.34.0
Container (OCI) Imagesβ
- gardener-extension-os-gardenlinux:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/os-gardenlinux:v0.34.0
Update os-ubuntu to 1.33.0
[github.com/gardener/gardener-extension-os-ubuntu:v1.33.0]
π Othersβ
[OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#251][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#247]
Helm Chartsβ
- os-ubuntu:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-ubuntu:v1.33.0
Container (OCI) Imagesβ
- gardener-extension-os-ubuntu:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/os-ubuntu:v1.33.0
Update provider-azure to 1.55.1
[github.com/gardener/gardener-extension-provider-azure:v1.55.1]
π Bug Fixesβ
[OPERATOR]Update mcm image to v0.17.1 by @hebelsan [#1324]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.55.1 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.55.1 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.55.1
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.55.1 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.55.1
Update gardener-controlplane to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2
Update gardener-controlplane to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2
Update gardenlet to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2