Release Notes v1.131
Yake release notes and upgrade guideβ
Related upstream release notes / changelogsβ
Update shoot-dns-service to 1.70.0
[github.com/gardener/gardener-extension-shoot-dns-service:v1.70.0]
π Othersβ
[OPERATOR]Fix admission helm chart OCI repository paths after renaming. by @MartinWeindel [#549]
Helm Chartsβ
- shoot-dns-service-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-application:v1.70.0 - shoot-dns-service-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-runtime:v1.70.0 - shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service:v1.70.0
Container (OCI) Imagesβ
- gardener-extension-admission-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-shoot-dns-service:v1.70.0 - gardener-extension-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-dns-service:v1.70.0
Update gardener-controlplane to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update gardener-controlplane to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update gardenlet to 1.128.1
[github.com/gardener/gardener:v1.128.1]
π Bug Fixesβ
[OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @gardener-ci-robot [#12991]
π Othersβ
[USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @gardener-ci-robot [#12992]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.1
Update os-coreos to 1.26.0
[github.com/gardener/gardener-extension-os-coreos:v1.26.0]
π Othersβ
[OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#224][DEVELOPER]migrate pipeline to GitHub-Actions by @ccwienk [#187][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#219]
Helm Chartsβ
- os-coreos:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-coreos:v1.26.0
Container (OCI) Imagesβ
- gardener-extension-os-coreos:
europe-docker.pkg.dev/gardener-project/releases/extensions/os-coreos:v1.26.0
Update provider-azure to 1.55.0
[github.com/gardener/gardener-extension-provider-azure:v1.55.0]
β οΈ Breaking Changesβ
[OPERATOR]Refactor Feature Gates specification for the provider-extesion helm chart. Operators need to specify their deployed feature gates with their canonical name. by @kon-angelo [#1301]
β¨ New Featuresβ
[OPERATOR]This extension now supportsWorkloadIdentitys as credentials for etcd backup. by @vpnachev [#1265]
π Othersβ
[OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1266][OPERATOR]Fix a bug that disabled subnet's default outbound access. by @kon-angelo [#1290][OPERATOR]Add advanced shoot input validation by @kon-angelo [#1295]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.55.0 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.55.0 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.55.0
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.55.0 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.55.0
Update dashboard to 1.82.2
[github.com/gardener/dashboard:1.82.2]
π Bug Fixesβ
[USER]Resolved a server error that occurred when retrieving information in the About dialog by @gardener-github-actions[bot] [#2645][USER]Fixed an issue where supported regions were not correctly identified as recommended regions. This caused invalid defaulting of regions, and in cases whereseedCandidateDeterminationStrategywas set toSameRegion, the region list could incorrectly be empty by @gardener-github-actions[bot] [#2646]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.2
Update dashboard to 1.82.2
[github.com/gardener/dashboard:1.82.2]
π Bug Fixesβ
[USER]Resolved a server error that occurred when retrieving information in the About dialog by @gardener-github-actions[bot] [#2645][USER]Fixed an issue where supported regions were not correctly identified as recommended regions. This caused invalid defaulting of regions, and in cases whereseedCandidateDeterminationStrategywas set toSameRegion, the region list could incorrectly be empty by @gardener-github-actions[bot] [#2646]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.2
Update provider-gcp to 1.46.0
[github.com/gardener/gardener-extension-provider-gcp:v1.46.0]
β¨ New Featuresβ
[OPERATOR]This extension now supportsWorkloadIdentitys as credentials for etcd backup. by @vpnachev [#1151]
π Bug Fixesβ
[OPERATOR]A bug in theadmission-gcpcomponent, which was causing a nil-pointer exception in case a new in-place worker is added, is now fixed. by @shafeeqes [#1169][OPERATOR]A bug preventing all obsolete machine-controller-manager ClusterRoles and ClusterRoleBindings to be deleted on extension startup has been fixed. by @georgibaltiev [#1137]
π Othersβ
[OPERATOR]Remove unused terraformer image by @kon-angelo [#1181][OPERATOR]Update GHA for new release options by @kon-angelo [#1131][OPERATOR]Update RBAC for extensions running in the runtime cluster. by @kon-angelo [#1155][OPERATOR]Upgrade gardener dependency to v1.122.1 by @plkokanov [#1122][OPERATOR]provider-gcpno longer supports Shoots with Πubernetes version <= 1.28. by @georgibaltiev [#1123][OPERATOR]Improve user input validation for provider related fields. by @kon-angelo [#1173][OPERATOR]Upgrade gardener/gardener to v1.125.0 by @hebelsan [#1142][OPERATOR]Upgrade gardener dependency to v1.123.1 by @theoddora [#1132][OPERATOR]Deprecate obsolete role, rolebinding and serviceaccounts from terraformer by @kon-angelo [#1136][DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#1121][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1154][OPERATOR]Update csi driver filestore image from v1.10.1 to v1.11.0 by @hebelsan [#1124][OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#1165][OPERATOR]Increase node controller workers for cloud-controller-manager by @kon-angelo [#1138][OPERATOR]Update gardener/gardener to v1.127.1 by @hebelsan [#1172]
Helm Chartsβ
- admission-gcp-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-application:v1.46.0 - admission-gcp-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-runtime:v1.46.0 - provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-gcp:v1.46.0
Container (OCI) Imagesβ
- gardener-extension-admission-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-gcp:v1.46.0 - gardener-extension-provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-gcp:v1.46.0
Update provider-openstack to 1.49.0
[github.com/gardener/gardener-extension-provider-openstack:v1.49.0]
β οΈ Breaking Changesβ
[OPERATOR]Update the defaults for the infrastructure controller. Unless opted out per shoot or per seed, the infrastructure controller will now by default reconcile using the flow implementation. In future release v1.50.0 we will disable reconciliation via terraform. by @kon-angelo [#1114]
π Bug Fixesβ
[OPERATOR]A bug preventing all obsolete machine-controller-manager ClusterRoles and ClusterRoleBindings to be deleted on extension startup has been fixed. by @georgibaltiev [#1116]
π Othersβ
[OPERATOR]Remove deprecated storage class nfs-constraint-for manila-csi-driver by @hebelsan [#1131] [OPERATOR]provider-openstackno longer supports Shoots with Πubernetes version <= 1.28. by @RadaBDimitrova [#1101][OPERATOR]Update non-gardener dependencies & gardener/gardener to v1.125.1 by @hebelsan [#1127][DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#1090][OPERATOR]Upgrade gardener dependency to v1.123.1 by @theoddora [#1113][OPERATOR]Upgrade gardener dependency to v1.122.1 by @plkokanov [#1100][OPERATOR]export testresults as inlined ocm-resource by @heldkat [#1107][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1136][DEVELOPER]Separate bastion reconcile and delete options by @hebelsan [#1108][OPERATOR]Add shoot input validation by @kon-angelo [#1155][OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1139]
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.49.0 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.49.0 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.49.0
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.49.0 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.49.0
Update gardener-controlplane to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update gardener-controlplane to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update gardenlet to 1.128.2
[github.com/gardener/gardener:v1.128.2]
π Bug Fixesβ
[DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @gardener-ci-robot [#13016]
π Othersβ
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @gardener-ci-robot [#13016][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13011]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.2
Update provider-aws to 1.64.0
[github.com/gardener/gardener-extension-provider-aws:v1.64.0]
β¨ New Featuresβ
[OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto use credentials of eitherv1.Secretorsecurity.gardener.cloud/v1alpha1.WorkloadIdentityby @vpnachev [#1461]
π Othersβ
[OPERATOR]Update RBAC for extensions running in the runtime cluster. by @hebelsan [#1460][OPERATOR]LoadBalancer services in IPv6 and dual-stack clusters can now opt out of automatic dual-stack annotations usingextensions.gardener.cloud/ignore-load-balancer: "true". by @axel7born [#1459][OPERATOR]AMI selection for workers'MachineClasssupportsCloudprofileswithCapabilities. by @Roncossek [#1458][OPERATOR]Adopts Gardener MachineImageCapabilitiesand introducesCapabilitySetsto theproviderConfig. by @Roncossek [#1306][OPERATOR]Migration from dual-stack [IPv4, IPv6] to [IPv4] networking is now allowed. by @axel7born [#1481][OPERATOR]Input validation for shoot fields by @kon-angelo [#1479][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#1454][OPERATOR]Remove CPU requests for aws-extension components in Shoot and Seed. by @voelzmo [#1448][OPERATOR]Update mcm AWS image from v0.25.0 to v0.26.0 by @hebelsan [#1478]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.64.0 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.64.0 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.64.0
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.64.0 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.64.0
Update gardener-controlplane to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update gardener-controlplane to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update gardenlet to 1.128.3
[github.com/gardener/gardener:v1.128.3]
π Othersβ
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @gardener-ci-robot [#13038]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.3
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.3 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.3 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.3 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.3 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.3 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.3 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.3 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.3
Update provider-openstack to 1.49.1
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.49.1 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.49.1 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.49.1
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.49.1 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.49.1
Update shoot-rsyslog-relp to 0.10.1
[github.com/gardener/gardener-extension-shoot-rsyslog-relp:v0.10.1]
π Bug Fixesβ
[OPERATOR]Fix casing ofroleinScrapeConfig. by @gardener-ci-robot [#314]
Helm Chartsβ
- shoot-rsyslog-relp-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-application:v0.10.1 - shoot-rsyslog-relp-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-runtime:v0.10.1 - shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp:v0.10.1
Container (OCI) Imagesβ
- gardener-extension-shoot-rsyslog-relp-admission:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp-admission:v0.10.1 - gardener-extension-shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp:v0.10.1
Update acl to 1.12.0
What's Changedβ
β οΈ Breaking Changesβ
- Drop special handling for provider-openstack by @timebertt in https://github.com/stackitcloud/gardener-extension-acl/pull/173
- Operators should ensure that the provider-openstack version is recent enough to publish
Infrastructure.status.egressCIDRsfor all clusters before upgrading to this version of this extension.
- Operators should ensure that the provider-openstack version is recent enough to publish
π€ Dependenciesβ
- Update dependency go to v1.25.1 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/166
- Update actions/setup-go action to v6 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/167
- Update module github.com/onsi/ginkgo/v2 to v2.25.3 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/168
- Update k8s packages to v0.32.9 (patch) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/169
- Update module golang.org/x/tools to v0.37.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/170
- Update k8s packages (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/149
- Update module github.com/gardener/gardener to v1.127.4 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/175
- Update k8s packages (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/176
New Contributorsβ
- @MichaelEischer made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/171
Full Changelog: https://github.com/stackitcloud/gardener-extension-acl/compare/v1.11.0...v1.12.0
Update provider-aws to 1.64.1
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.64.1 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.64.1 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.64.1
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.64.1 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.64.1
Update dashboard to 1.82.3
[github.com/gardener/dashboard:1.82.3]
π Bug Fixesβ
[USER]Added the missingcloudflare-dnsprovider to the list of supported DNS providers by @gardener-github-actions[bot] [#2667]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.3
Update dashboard to 1.82.3
[github.com/gardener/dashboard:1.82.3]
π Bug Fixesβ
[USER]Added the missingcloudflare-dnsprovider to the list of supported DNS providers by @gardener-github-actions[bot] [#2667]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.3
Update gardener-controlplane to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardener-controlplane to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardenlet to 1.128.4
[github.com/gardener/gardener:v1.128.4]
π Bug Fixesβ
[DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13063][USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13074][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @vpnachev [#13088]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.128.4
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.128.4 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.128.4 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.128.4 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.128.4 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.128.4 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.128.4 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.128.4 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.128.4
Update gardener-controlplane to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update gardener-controlplane to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update gardenlet to 1.129.0
[github.com/gardener/gardener:v1.129.0]
β οΈ Breaking Changesβ
[OPERATOR]The GA-ed and unconditionally enabledUseNamespacedCloudProfilefeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @LucaBernstein [#13020][OPERATOR]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].apiGroupfield. Please update your Gardens accordingly. by @tobschli [#12839][USER]It is not allowed anymore to specify the following characters: [, #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].apiGroupfield. Please update your Shoots accordingly. by @tobschli [#12839][OPERATOR]The GA-ed and unconditionally enabledCredentialsRotationWithoutWorkersRolloutfeature gates is removed. If you have references to this feature gate, clean them up before upgrading to this version of Gardener. by @rfranzke [#13041][OPERATOR]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Garden's.spec.virtualCluster.Gardener.apiServer.watchCacheSizes.resources[].resourcefield. Please update your Gardens accordingly. by @tobschli [#12839][USER]The.status.credentials.rotation.kubeconfigfield in theShootAPI is removed. This field has been deprecated since Gardener v1.114.0. by @shafeeqes [#13037][USER]It is not allowed anymore to specify the following characters: [,. #], as well as capitalized letters, within the entries of the Shoot's.spec.kubernetes.kubeAPIServer.watchCacheSizes.resources[].resourcefield. Please update your Shoots accordingly. by @tobschli [#12839]
π° Noteworthyβ
[USER]ViewerKubeconfigis no longer using solely the groupgardener.cloud:system:viewersto grant viewer access to the shoot cluster, instead it is now granted only to Gardener system viewer users. Project Viewer users are granted viewer access to the shoot cluster via the groupgardener.cloud:project:viewers. by @vpnachev [#12674][USER]AdminKubeconfigis no longer using the groupsystem:mastersto grant admin access to the shoot cluster, instead it is now using the groupsgardener.cloud:system:adminsgranted to Gardener system admins andgardener.cloud:project:adminsgranted to Gardener Project admins. by @vpnachev [#12674]
β¨ New Featuresβ
[OPERATOR]gardener-admission-controller now supports enabling theOwnerReferencesPermissionEnforcementadmission plugin for the virtual kube-apiserver. Previously, it was rejecting requests from gardenlet because theshoots/finalizersandbackupbuckets/finalizerssubresources were not allowed. by @gardener-ci-robot [#13059][OPERATOR]TheOperatingSystemConfigcontainerd config was enhanced to specify theoverride_pathoption which is respected when generating thehosts.tomlfile for the respective upstream config. by @timuthy [#13002]
π Bug Fixesβ
[USER]A bug causing finalizers to not be removed fromSecrets when such are deleted and referenced by both aCredentialsBindingand aSecretBindingis fixed. by @gardener-ci-robot [#13075][OPERATOR]Fixed an issue that causedMachines to be duplicated when being saved in theShootState. This caused theShootStateto grow exponentially large and fail to be created. The issue could occur when there are multipleMachineDeploymentscreated for theShoot. by @gardener-ci-robot [#13089][OPERATOR]A bug in thegardenletdeployerunable to handle backup credentials of typeWorkloadIdentityhas been fixed. by @gardener-ci-robot [#13087][OPERATOR]Fixed thealertmanager-gardenpeer discovery service port names by @rickardsjp [#12988][DEVELOPER]An issue preventingextensions.gardener.cloud/v1alpha1.Bastions to be listed due to missing json tags is now fixed. by @gardener-ci-robot [#13062][DEVELOPER]ThePriorityfield for theMachineDeploymentAPI is optional instead of required again. by @tobschli [#13014]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.41.1to0.42.0. Release Notes by @gardener-ci-robot [#13009]
[OPERATOR]Revert server block import of coredns-custom configmap for node-local-dns. by @DockToFuture [#13028][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.41tov7.5.42. Release Notes by @gardener-ci-robot [#13023]
[DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.19.1tov0.20.0. by @gardener-ci-robot [#12980]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.26tov2.2.27. Release Notes by @gardener-ci-robot [#13022]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/ingress-nginx/controller-chrootfromv1.13.2tov1.13.3. by @gardener-ci-robot [#13047]
[DEPENDENCY]The following dependencies have been updated:fluent/fluent-operatorfromv3.2.5tov4.0.9by @nickytd [#12998]
[DEVELOPER]An issue with the ssh tunnel in the extensions setup is fixed. by @axel7born [#13019][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.1to1.82.2. Release Notes by @gardener-ci-robot [#13010]
[DEVELOPER]The optimistic defaulting of priorities forMachineDeployments was introduced again. by @tobschli [#13014][OPERATOR]Remove migration code to clean up obsolete Prometheus volumes by @vicwicker [#13021][USER]Gardener API server now serves the OpenAPI v2 schema (/openapi/v2endpoint) again and will keep on serving it until Gardenerv1.160. In Gardenerv1.127.0, the support for OpenAPI v2 schemas was removed. However, terraform-provider-kubernetes does not yet support OpenAPI v3 schema. by @shafeeqes [#12987]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.0
Update shoot-oidc-service to 0.33.0
[github.com/gardener/gardener-extension-shoot-oidc-service:v0.33.0]
β¨ New Featuresβ
[USER]shoot-oidc-serviceno longer supports Shoots with Πubernetes version <= 1.28. by @georgibaltiev [#340]
π Othersβ
[DEVELOPER]migrate CICD-Pipeline to GitHub-Actions by @ccwienk [#333][OPERATOR]An exampleExtensionmanifest for extension registration has been added. It can be found atexample/extension.yamlby @timuthy [#353][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#365][OPERATOR]Test results are now exported as inlined ocm-resource. by @heldkat [#342]
Helm Chartsβ
- shoot-oidc-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-oidc-service:v0.33.0
Container (OCI) Imagesβ
- gardener-extension-shoot-oidc-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-oidc-service:v0.33.0
Update shoot-flux to 0.23.0
What's Changedβ
- π€ Update module github.com/gardener/gardener to v1.128.1 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/191
- π€ Update fluxcd (minor) by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/180
- π€ Update module github.com/gardener/gardener to v1.129.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/194
- π€ Update module github.com/onsi/ginkgo/v2 to v2.26.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/192
- π€ Update k8s and gardener packages to v0.34.1 (patch) - autoclosed by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/190
- π€ Update k8s.io/utils digest to bc988d5 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-shoot-flux/pull/193
Full Changelog: https://github.com/stackitcloud/gardener-extension-shoot-flux/compare/v0.22.0...v0.23.0
Update acl to 1.13.0
What's Changedβ
π€ Dependenciesβ
- Update module github.com/gardener/gardener to v1.128.3 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/177
- Update k8s.io/utils digest to bc988d5 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/179
- Update module github.com/gardener/gardener to v1.128.4 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/181
- Update module sigs.k8s.io/controller-runtime to v0.22.2 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/185
- Update dependency go to v1.25.2 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/186
- Update module github.com/onsi/ginkgo/v2 to v2.26.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/180
- Update module golang.org/x/tools to v0.38.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/187
- Update module github.com/gardener/gardener to v1.129.0 by @renovate[bot] in https://github.com/stackitcloud/gardener-extension-acl/pull/182
βΉοΈ Other Changesβ
- chore(vpa): Update the extension
VPAresources to use update modeRecreateby @vitanovs in https://github.com/stackitcloud/gardener-extension-acl/pull/178 - Add controls for Pod Security Standards
restrictedpolicy by @relusc in https://github.com/stackitcloud/gardener-extension-acl/pull/184
New Contributorsβ
- @vitanovs made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/178
- @relusc made their first contribution in https://github.com/stackitcloud/gardener-extension-acl/pull/184
Full Changelog: https://github.com/stackitcloud/gardener-extension-acl/compare/v1.12.0...v1.13.0
Update gardener-controlplane to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update gardener-controlplane to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update gardenlet to 1.129.1
[github.com/gardener/gardener:v1.129.1]
π Bug Fixesβ
[OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @@oliver-goetz [#13142]
π Othersβ
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @@nickytd [#13139][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @@gardener-ci-robot [#13099]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.1
Update runtime-gvisor to 0.25.0
[github.com/gardener/gardener-extension-runtime-gvisor:v0.25.0]
π Othersβ
[OPERATOR]Updated gVisor binaries to 20251006.0. by @gardener-github-actions[bot] [#297][OPERATOR]It is now possible to specify runsc'spanic-signalsetting through the gVisor providerConfig. by @MrBatschner [#296]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#290]
Helm Chartsβ
- runtime-gvisor:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/runtime-gvisor:v0.25.0
Container (OCI) Imagesβ
- gardener-extension-runtime-gvisor-installation:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/runtime-gvisor-installation:v0.25.0 - gardener-extension-runtime-gvisor:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/runtime-gvisor:v0.25.0
Update shoot-cert-service to 1.54.0
[github.com/gardener/gardener-extension-shoot-cert-service:v1.54.0]
β¨ New Featuresβ
[USER]Validation for secrets of ACME issuers specified in shoot manifest is performed on reconciling the extension.
Both theprivateKeysecret of the ACME issuer and the optional external account binding secret are validated for the allowed data keys and values. by @MartinWeindel [#458]
π Bug Fixesβ
[OPERATOR]Add networking policy label to allow access to virtual garden if thecontrolplane-cert-serviceextension is enabled and Garden runtime cluster and soil are the same. by @MartinWeindel [#469]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#470]
Helm Chartsβ
- shoot-cert-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-cert-service:v1.54.0
Container (OCI) Imagesβ
- gardener-extension-shoot-cert-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-cert-service:v1.54.0
Update dashboard to 1.82.4
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.4
Update dashboard to 1.82.4
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.4
Update external-dns-management to 0.29.0
[github.com/gardener/external-dns-management:v0.29.0]
β οΈ Breaking Changesβ
[USER]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645][OPERATOR]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645]
β¨ New Featuresβ
[OPERATOR]Support command line option--kubeconfig.crds-shoot-no-cleanup-labelto allow to set the labelshoot.gardener.cloud/no-cleanup=truefor deployed CRDs. by @MartinWeindel [#674]
π Bug Fixesβ
[OPERATOR][netlify-dns] Allow underscore character on validating the API token for netlify. by @MartinWeindel [#644]
π Othersβ
[OPERATOR]Migrate the workload VPA from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#671][OPERATOR]Update cloudflare-dns to use the Version 6 ofgithub.com/cloudflare/cloudflare-go/v6. by @MartinWeindel [#640][OPERATOR]Aligned zone metrics handling in Azure DNS and Azure Private DNS providers with all other DNS providers. by @marc1404 [#667][OPERATOR]Simplify build workflow, drop redundantcheckstep. by @MartinWeindel [#658]
Helm Chartsβ
- dns-controller-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/dns-controller-manager:v0.29.0
Container (OCI) Imagesβ
- dns-controller-manager:
europe-docker.pkg.dev/gardener-project/releases/dns-controller-manager:v0.29.0
Update os-gardenlinux to 0.34.0
[github.com/gardener/gardener-extension-os-gardenlinux:v0.34.0]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#301]
Helm Chartsβ
- os-gardenlinux:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-gardenlinux:v0.34.0
Container (OCI) Imagesβ
- gardener-extension-os-gardenlinux:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/os-gardenlinux:v0.34.0
Update os-ubuntu to 1.33.0
[github.com/gardener/gardener-extension-os-ubuntu:v1.33.0]
π Othersβ
[OPERATOR]Add missing securityContext controls in order to comply with the restricted Pod Security Standards policy. by @mstueer [#251][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#247]
Helm Chartsβ
- os-ubuntu:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/os-ubuntu:v1.33.0
Container (OCI) Imagesβ
- gardener-extension-os-ubuntu:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/os-ubuntu:v1.33.0
Update provider-azure to 1.55.1
[github.com/gardener/gardener-extension-provider-azure:v1.55.1]
π Bug Fixesβ
[OPERATOR]Update mcm image to v0.17.1 by @hebelsan [#1324]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.55.1 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.55.1 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.55.1
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.55.1 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.55.1
Update gardener-controlplane to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2
Update gardener-controlplane to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2
Update gardenlet to 1.129.2
[github.com/gardener/gardener:v1.129.2]
π Bug Fixesβ
[OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13186][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13193][OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13199]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.129.2
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.129.2 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.129.2 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.129.2 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.129.2 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.129.2 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.129.2 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.129.2 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.129.2
Update networking-calico to 1.52.0
[github.com/gardener/gardener-extension-networking-calico:v1.52.0]
π Othersβ
[OPERATOR]Addmultus-cniDaemonSet to enable attaching multiple network interfaces to pods by @defo89 [#719][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#723][OPERATOR]minAllowedcan now be specified if the autoscaling modevpais used. by @ScheererJ [#729]
π Documentationβ
[OPERATOR]fix vethMTU example by @RiRa12621 [#718]
Helm Chartsβ
- admission-calico-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-calico-application:v1.52.0 - admission-calico-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-calico-runtime:v1.52.0 - networking-calico:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/networking-calico:v1.52.0
Container (OCI) Imagesβ
- gardener-extension-admission-calico:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-calico:v1.52.0 - gardener-extension-networking-calico:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/networking-calico:v1.52.0
Update networking-cilium to 1.44.0
[github.com/gardener/gardener-extension-networking-cilium:v1.44.0]
π Bug Fixesβ
[OPERATOR]AdaptScrapeConfigto more pickyprometheus-operatorv0.76.0to support new gardener releases. by @ScheererJ [#631]
π Othersβ
[OPERATOR]Mutate bind address for node-local-dns sidecar container. by @DockToFuture [#642][OPERATOR]Allows enabling policy audit mode in networking-cilium extension. by @steinwelberg [#624][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#635][USER]An issue is fixed, that the cilium CA is never renewed. by @axel7born [#639]
Helm Chartsβ
- admission-cilium-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-cilium-application:v1.44.0 - admission-cilium-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-cilium-runtime:v1.44.0 - networking-cilium:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/networking-cilium:v1.44.0
Container (OCI) Imagesβ
- gardener-extension-admission-cilium:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-cilium:v1.44.0 - gardener-extension-networking-cilium:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/networking-cilium:v1.44.0
Update shoot-networking-problemdetector to 0.30.0
[github.com/gardener/gardener-extension-shoot-networking-problemdetector:v0.30.0]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#283]
Helm Chartsβ
- shoot-networking-problemdetector:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-networking-problemdetector:v0.30.0
Container (OCI) Imagesβ
- gardener-extension-shoot-networking-problemdetector:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-networking-problemdetector:v0.30.0
Update gardener-controlplane to 1.130.0
[github.com/gardener/gardener:v1.130.0]
β οΈ Breaking Changesβ
[OPERATOR]The followingShootfields are now validated:.spec.kubernetes.verticalPodAutoscaler.evictionRateBurstmust be non-negative..spec.kubernetes.verticalPodAutoscaler.evictionToleranceis limited in [0, 1) interval..spec.kubernetes.verticalPodAutoscaler.recommendationMarginFractionis limited in [0, 1) interval..spec.kubernetes.kubeScheduler.kubeMaxPDVolsmust be a positive number..spec.tolerations[]keyandvalueare validated similar to Kubernetes Tolerations..spec.schedulerNamemust comply with RFC 1123 Label Names..spec.extensions[].typemust comply with RFC 1123 Label Names..spec.provider.typemust comply with RFC 1123 Label Names. by @dimitar-kostadinov [#12844]
π° Noteworthyβ
[DEVELOPER]The Gardener reviewer groups have been refined and can be found in theOWNERS_ALIASESfile. This will serve as the foundation for finding appropriate reviewers for the respective areas in the future. by @timuthy [#13024]
β¨ New Featuresβ
[DEVELOPER]Shoot advertised addresses are now configurable by extension components for Shoot Ingress resources. For more details, see Shoot Advertised Addresses. by @dnaeon [#13043][OPERATOR]gardener-operatornow prevents deletion of thegardennamespace in the runtime cluster whileoperator.gardener.cloud/v1alpha1.Gardenresources still exist. by @rfranzke [#13101]
π Bug Fixesβ
[OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13187][OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13185][USER]Fixes an issue where connecting to the kube-apiserver via the seed ingress URL did not work when the shoot used an exposure class. by @axel7born [#13055][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13192][DEVELOPER]In the local setup, the hosts file entry forgarden.local.gardener.cloudis written again upon node reboot. by @LucaBernstein [#13132][OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @oliver-goetz [#13081][DEVELOPER]A defaultKUBECONFIGis now set when runningmake seed-{up|down}. by @oliver-goetz [#13071][DEVELOPER]The testmachinery tests for control plane migration were fixed so that the checks if nodes are kept after control plane migration are executed. by @plkokanov [#13057][OPERATOR]Theworker-pools-operatingsystemconfig-hashessecret is now restored in theShoot's control plane during the restore phase of control plane migration. This fixes an issue which caused node rollouts to happen during control plane migration when theNewWorkerPoolHashfeature gate is enabled. by @plkokanov [#13056]
π Othersβ
[OPERATOR]Use aggregate Prometheus internal service for federation from the garden Prometheus when the runtime cluster is a seed by @vicwicker [#13066][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.3to1.82.4. Release Notes by @gardener-ci-robot [#13157]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @gardener-ci-robot [#13032]
[OPERATOR]Introduces feature gateUseUnifiedHTTPProxyfor unified HTTP proxy infrastructure. by @hown3d [#13003][DEVELOPER]The custom client certificate parsing inIstioTLSTerminationlua scripts was replaced withparsedSubjectPeerCertificate()envoy function. by @oliver-goetz [#13128][DEPENDENCY]The following dependencies have been updated:quay.io/cortexproject/cortexfromv1.19.0tov1.19.1. by @gardener-ci-robot [#13148]
[OPERATOR]The followingkube-apiservermetrics are now collected, which might be handy to optimize Priority and Fairness usage:apiserver_flowcontrol_current_inqueue_requestsapiserver_flowcontrol_current_executing_requestsapiserver_flowcontrol_current_executing_seatsapiserver_flowcontrol_request_wait_duration_secondsapiserver_flowcontrol_nominal_limit_seatsapiserver_flowcontrol_request_concurrency_in_useapiserver_flowcontrol_priority_level_request_utilizationapiserver_flowcontrol_priority_level_seat_utilizationby @dimakow [#13000]
[OPERATOR]Add support for gzip compression to metrics endpoint of istio ingress gateway. by @ScheererJ [#13137][DEPENDENCY]The following dependencies have been updated:gardener/dependency-watchdogfromv1.5.0tov1.6.0. Release Notesgithub.com/gardener/dependency-watchdogfromv1.5.0tov1.6.0. by @ashwani2k [#13127]
[OPERATOR]gardener-node-agent-initnow outputs logs to journal and console (/dev/console). by @RAPSNX [#12822][DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.1to1.27.2.gcr.io/istio-release/proxyv2from1.27.1to1.27.2. by @gardener-ci-robot [#13151]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.2to1.82.3. Release Notes by @gardener-ci-robot [#13069]
[OPERATOR]The following dependencies have been updated:gardener/etcd-druidfromv0.32.0tov0.33.0. Release Notes by @shreyas-s-rao [#13172]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/autoscaling/vpa-admission-controllerfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-recommenderfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-updaterfrom1.4.2to1.5.1. by @gardener-ci-robot [#13095]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.0to1.27.1.gcr.io/istio-release/proxyv2from1.27.0to1.27.1. by @axel7born [#13004]
[OPERATOR]New panels added in VPA Recommendations Plutono dashboard to track number of pods with deviations from their CPU recommendation. by @RadaBDimitrova [#12898][OPERATOR]VerticalPodAutoscaler resources, deployed by Gardener, are now instrumented to switch from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#13046][DEPENDENCY]The following dependencies have been updated:open-telemetry/opentelemetry-operatorfromv0.129.1tov0.136.0. Release Notes by @rrhubenov [#13106]
[DEPENDENCY]The following dependencies have been updated:quay.io/kiwigrid/k8s-sidecarfrom1.30.10to1.30.11. by @gardener-ci-robot [#13149]
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @nickytd [#13116][OPERATOR]Add IOPS metrics to etcd dashboard by @voelzmo [#13146]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.0
Update gardener-controlplane to 1.130.0
[github.com/gardener/gardener:v1.130.0]
β οΈ Breaking Changesβ
[OPERATOR]The followingShootfields are now validated:.spec.kubernetes.verticalPodAutoscaler.evictionRateBurstmust be non-negative..spec.kubernetes.verticalPodAutoscaler.evictionToleranceis limited in [0, 1) interval..spec.kubernetes.verticalPodAutoscaler.recommendationMarginFractionis limited in [0, 1) interval..spec.kubernetes.kubeScheduler.kubeMaxPDVolsmust be a positive number..spec.tolerations[]keyandvalueare validated similar to Kubernetes Tolerations..spec.schedulerNamemust comply with RFC 1123 Label Names..spec.extensions[].typemust comply with RFC 1123 Label Names..spec.provider.typemust comply with RFC 1123 Label Names. by @dimitar-kostadinov [#12844]
π° Noteworthyβ
[DEVELOPER]The Gardener reviewer groups have been refined and can be found in theOWNERS_ALIASESfile. This will serve as the foundation for finding appropriate reviewers for the respective areas in the future. by @timuthy [#13024]
β¨ New Featuresβ
[DEVELOPER]Shoot advertised addresses are now configurable by extension components for Shoot Ingress resources. For more details, see Shoot Advertised Addresses. by @dnaeon [#13043][OPERATOR]gardener-operatornow prevents deletion of thegardennamespace in the runtime cluster whileoperator.gardener.cloud/v1alpha1.Gardenresources still exist. by @rfranzke [#13101]
π Bug Fixesβ
[OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13187][OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13185][USER]Fixes an issue where connecting to the kube-apiserver via the seed ingress URL did not work when the shoot used an exposure class. by @axel7born [#13055][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13192][DEVELOPER]In the local setup, the hosts file entry forgarden.local.gardener.cloudis written again upon node reboot. by @LucaBernstein [#13132][OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @oliver-goetz [#13081][DEVELOPER]A defaultKUBECONFIGis now set when runningmake seed-{up|down}. by @oliver-goetz [#13071][DEVELOPER]The testmachinery tests for control plane migration were fixed so that the checks if nodes are kept after control plane migration are executed. by @plkokanov [#13057][OPERATOR]Theworker-pools-operatingsystemconfig-hashessecret is now restored in theShoot's control plane during the restore phase of control plane migration. This fixes an issue which caused node rollouts to happen during control plane migration when theNewWorkerPoolHashfeature gate is enabled. by @plkokanov [#13056]
π Othersβ
[OPERATOR]Use aggregate Prometheus internal service for federation from the garden Prometheus when the runtime cluster is a seed by @vicwicker [#13066][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.3to1.82.4. Release Notes by @gardener-ci-robot [#13157]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @gardener-ci-robot [#13032]
[OPERATOR]Introduces feature gateUseUnifiedHTTPProxyfor unified HTTP proxy infrastructure. by @hown3d [#13003][DEVELOPER]The custom client certificate parsing inIstioTLSTerminationlua scripts was replaced withparsedSubjectPeerCertificate()envoy function. by @oliver-goetz [#13128][DEPENDENCY]The following dependencies have been updated:quay.io/cortexproject/cortexfromv1.19.0tov1.19.1. by @gardener-ci-robot [#13148]
[OPERATOR]The followingkube-apiservermetrics are now collected, which might be handy to optimize Priority and Fairness usage:apiserver_flowcontrol_current_inqueue_requestsapiserver_flowcontrol_current_executing_requestsapiserver_flowcontrol_current_executing_seatsapiserver_flowcontrol_request_wait_duration_secondsapiserver_flowcontrol_nominal_limit_seatsapiserver_flowcontrol_request_concurrency_in_useapiserver_flowcontrol_priority_level_request_utilizationapiserver_flowcontrol_priority_level_seat_utilizationby @dimakow [#13000]
[OPERATOR]Add support for gzip compression to metrics endpoint of istio ingress gateway. by @ScheererJ [#13137][DEPENDENCY]The following dependencies have been updated:gardener/dependency-watchdogfromv1.5.0tov1.6.0. Release Notesgithub.com/gardener/dependency-watchdogfromv1.5.0tov1.6.0. by @ashwani2k [#13127]
[OPERATOR]gardener-node-agent-initnow outputs logs to journal and console (/dev/console). by @RAPSNX [#12822][DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.1to1.27.2.gcr.io/istio-release/proxyv2from1.27.1to1.27.2. by @gardener-ci-robot [#13151]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.2to1.82.3. Release Notes by @gardener-ci-robot [#13069]
[OPERATOR]The following dependencies have been updated:gardener/etcd-druidfromv0.32.0tov0.33.0. Release Notes by @shreyas-s-rao [#13172]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/autoscaling/vpa-admission-controllerfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-recommenderfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-updaterfrom1.4.2to1.5.1. by @gardener-ci-robot [#13095]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.0to1.27.1.gcr.io/istio-release/proxyv2from1.27.0to1.27.1. by @axel7born [#13004]
[OPERATOR]New panels added in VPA Recommendations Plutono dashboard to track number of pods with deviations from their CPU recommendation. by @RadaBDimitrova [#12898][OPERATOR]VerticalPodAutoscaler resources, deployed by Gardener, are now instrumented to switch from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#13046][DEPENDENCY]The following dependencies have been updated:open-telemetry/opentelemetry-operatorfromv0.129.1tov0.136.0. Release Notes by @rrhubenov [#13106]
[DEPENDENCY]The following dependencies have been updated:quay.io/kiwigrid/k8s-sidecarfrom1.30.10to1.30.11. by @gardener-ci-robot [#13149]
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @nickytd [#13116][OPERATOR]Add IOPS metrics to etcd dashboard by @voelzmo [#13146]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.0
Update gardenlet to 1.130.0
[github.com/gardener/gardener:v1.130.0]
β οΈ Breaking Changesβ
[OPERATOR]The followingShootfields are now validated:.spec.kubernetes.verticalPodAutoscaler.evictionRateBurstmust be non-negative..spec.kubernetes.verticalPodAutoscaler.evictionToleranceis limited in [0, 1) interval..spec.kubernetes.verticalPodAutoscaler.recommendationMarginFractionis limited in [0, 1) interval..spec.kubernetes.kubeScheduler.kubeMaxPDVolsmust be a positive number..spec.tolerations[]keyandvalueare validated similar to Kubernetes Tolerations..spec.schedulerNamemust comply with RFC 1123 Label Names..spec.extensions[].typemust comply with RFC 1123 Label Names..spec.provider.typemust comply with RFC 1123 Label Names. by @dimitar-kostadinov [#12844]
π° Noteworthyβ
[DEVELOPER]The Gardener reviewer groups have been refined and can be found in theOWNERS_ALIASESfile. This will serve as the foundation for finding appropriate reviewers for the respective areas in the future. by @timuthy [#13024]
β¨ New Featuresβ
[DEVELOPER]Shoot advertised addresses are now configurable by extension components for Shoot Ingress resources. For more details, see Shoot Advertised Addresses. by @dnaeon [#13043][OPERATOR]gardener-operatornow prevents deletion of thegardennamespace in the runtime cluster whileoperator.gardener.cloud/v1alpha1.Gardenresources still exist. by @rfranzke [#13101]
π Bug Fixesβ
[OPERATOR]Thequay.io/kiwigrid/k8s-sidecarimage is downgraded tov1.30.9to prevent a regression that causes Plutono dashboards to not be loaded. by @rickardsjp [#13187][OPERATOR]A bug which deactivates topology aware routing for kube-apiservers when l7 load-balancing is not active has been fixed. by @oliver-goetz [#13185][USER]Fixes an issue where connecting to the kube-apiserver via the seed ingress URL did not work when the shoot used an exposure class. by @axel7born [#13055][USER]An upstream issue causing kube-proxy to log thousands of log entries per second is now mitigated by reducing the kube-proxy verbosity level when running an affected Kubernetes version in the range [1.33.0, 1.33.6). For more details, see http://issues.k8s.io/132678. by @ialidzhikov [#13192][DEVELOPER]In the local setup, the hosts file entry forgarden.local.gardener.cloudis written again upon node reboot. by @LucaBernstein [#13132][OPERATOR]A bug has been fixed which prevented L7 load-balancing for kube-apiservers to work correctly on Seeds/Gardens where topology-aware-routing is activated. by @oliver-goetz [#13081][DEVELOPER]A defaultKUBECONFIGis now set when runningmake seed-{up|down}. by @oliver-goetz [#13071][DEVELOPER]The testmachinery tests for control plane migration were fixed so that the checks if nodes are kept after control plane migration are executed. by @plkokanov [#13057][OPERATOR]Theworker-pools-operatingsystemconfig-hashessecret is now restored in theShoot's control plane during the restore phase of control plane migration. This fixes an issue which caused node rollouts to happen during control plane migration when theNewWorkerPoolHashfeature gate is enabled. by @plkokanov [#13056]
π Othersβ
[OPERATOR]Use aggregate Prometheus internal service for federation from the garden Prometheus when the runtime cluster is a seed by @vicwicker [#13066][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.3to1.82.4. Release Notes by @gardener-ci-robot [#13157]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.21tov0.8.22. by @gardener-ci-robot [#13032]
[OPERATOR]Introduces feature gateUseUnifiedHTTPProxyfor unified HTTP proxy infrastructure. by @hown3d [#13003][DEVELOPER]The custom client certificate parsing inIstioTLSTerminationlua scripts was replaced withparsedSubjectPeerCertificate()envoy function. by @oliver-goetz [#13128][DEPENDENCY]The following dependencies have been updated:quay.io/cortexproject/cortexfromv1.19.0tov1.19.1. by @gardener-ci-robot [#13148]
[OPERATOR]The followingkube-apiservermetrics are now collected, which might be handy to optimize Priority and Fairness usage:apiserver_flowcontrol_current_inqueue_requestsapiserver_flowcontrol_current_executing_requestsapiserver_flowcontrol_current_executing_seatsapiserver_flowcontrol_request_wait_duration_secondsapiserver_flowcontrol_nominal_limit_seatsapiserver_flowcontrol_request_concurrency_in_useapiserver_flowcontrol_priority_level_request_utilizationapiserver_flowcontrol_priority_level_seat_utilizationby @dimakow [#13000]
[OPERATOR]Add support for gzip compression to metrics endpoint of istio ingress gateway. by @ScheererJ [#13137][DEPENDENCY]The following dependencies have been updated:gardener/dependency-watchdogfromv1.5.0tov1.6.0. Release Notesgithub.com/gardener/dependency-watchdogfromv1.5.0tov1.6.0. by @ashwani2k [#13127]
[OPERATOR]gardener-node-agent-initnow outputs logs to journal and console (/dev/console). by @RAPSNX [#12822][DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.1to1.27.2.gcr.io/istio-release/proxyv2from1.27.1to1.27.2. by @gardener-ci-robot [#13151]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.2to1.82.3. Release Notes by @gardener-ci-robot [#13069]
[OPERATOR]The following dependencies have been updated:gardener/etcd-druidfromv0.32.0tov0.33.0. Release Notes by @shreyas-s-rao [#13172]
[DEPENDENCY]The following dependencies have been updated:registry.k8s.io/autoscaling/vpa-admission-controllerfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-recommenderfrom1.4.2to1.5.1.registry.k8s.io/autoscaling/vpa-updaterfrom1.4.2to1.5.1. by @gardener-ci-robot [#13095]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.0to1.27.1.gcr.io/istio-release/proxyv2from1.27.0to1.27.1. by @axel7born [#13004]
[OPERATOR]New panels added in VPA Recommendations Plutono dashboard to track number of pods with deviations from their CPU recommendation. by @RadaBDimitrova [#12898][OPERATOR]VerticalPodAutoscaler resources, deployed by Gardener, are now instrumented to switch from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#13046][DEPENDENCY]The following dependencies have been updated:open-telemetry/opentelemetry-operatorfromv0.129.1tov0.136.0. Release Notes by @rrhubenov [#13106]
[DEPENDENCY]The following dependencies have been updated:quay.io/kiwigrid/k8s-sidecarfrom1.30.10to1.30.11. by @gardener-ci-robot [#13149]
[OPERATOR]Logging stack configuration is now tuned for high-throughput scenarios. It brings changes in local file system resource utilization, addressing potential node disk pressure occurrences. by @nickytd [#13116][OPERATOR]Add IOPS metrics to etcd dashboard by @voelzmo [#13146]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.0
Update provider-openstack to 1.50.0
[github.com/gardener/gardener-extension-provider-openstack:v1.50.0]
β¨ New Featuresβ
[OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto refer only to credentials of typev1.Secret. by @vpnachev [#1150][DEVELOPER]Add GH Workflow to auto-update images inimagevector/images.yamland create a corresponding PR. by @wpross [#1174]
π Othersβ
[OPERATOR]Configure QPS + burst for CSI components by @hendrikKahl [#1178][OPERATOR]Updated gardener to v1.128.3 by @hebelsan [#1167][DEPENDENCY]The following container images have been updated:- cloud-controller-manager: v1.31.3 -> v1.31.4 (patch)
- cloud-controller-manager: v1.32.0 -> v1.32.1 (patch)
- cloud-controller-manager: v1.33.0 -> v1.33.1 (patch)
- csi-driver-cinder: v1.31.3 -> v1.31.4 (patch)
- csi-driver-cinder: v1.32.0 -> v1.32.1 (patch)
- csi-driver-cinder: v1.33.0 -> v1.33.1 (patch)
- csi-driver-manila: v1.31.3 -> v1.31.4 (patch)
- csi-driver-manila: v1.32.0 -> v1.32.1 (patch)
- csi-driver-manila: v1.33.0 -> v1.33.1 (patch)
- csi-driver-nfs: v4.11.0 -> v4.12.0 (singleton)
- csi-provisioner: v5.2.0 -> v5.3.0 (singleton)
- csi-attacher: v4.8.1 -> v4.10.0 (singleton)
- csi-snapshotter: v8.2.1 -> v8.3.0 (singleton)
- csi-snapshot-controller: v8.2.1 -> v8.3.0 (singleton)
- csi-resizer: v1.13.2 -> v1.14.0 (singleton)
- csi-node-driver-registrar: v2.13.0 -> v2.15.0 (singleton)
- csi-liveness-probe: v2.15.0 -> v2.17.0 (singleton) by @gardener-github-actions[bot] [#1177]
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#1169][OPERATOR]Updated gophercloud/v2 to v2.8.0 by @hebelsan [#1167]
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.50.0 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.50.0 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.50.0
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.50.0 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.50.0
Update cloudprofiles to 0.8.0
Update provider-aws to 1.65.0
[github.com/gardener/gardener-extension-provider-aws:v1.65.0]
β¨ New Featuresβ
[DEVELOPER]Add GH Workflow to auto-update images inimagevector/images.yamland create a corresponding PR. by @wpross [#1504][OPERATOR]Support migration of shoots with duplicated zone entries from terraform to flow by @hebelsan [#1496]
π Bug Fixesβ
[OPERATOR]Fix nil pointer dereference in getSubnetKey by @hebelsan [#1516][OPERATOR]Set EFS daemonset hostnetwork field true by @hebelsan [#1530][OPERATOR]Wait until NATGateway is available after update by @hebelsan [#1512]
π Othersβ
[OPERATOR]Remove cleanup for SeedLegacyCSISnapshotValidation by @hebelsan [#1506][OPERATOR]Remove code duplication for infra status creation by @hebelsan [#1505][OPERATOR]Update aws-ipam-controller tov0.7.0. by @DockToFuture [#1485][OPERATOR]Updated aws sdk, gardener-external-dns-management, ginkgo, golang/time and golang/tools library by @hebelsan [#1511][OPERATOR]Reduce AWS api calls for IPv6 or DualStack cluster by @hebelsan [#1503][OPERATOR]Deny dual-stack migration if overlay is not explicitly disabled. by @DockToFuture [#1489][OPERATOR]Update AWS CCM images by @hebelsan [#1487][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#1498][OPERATOR]Update EFS CSI driver image to v2.1.12 by @hebelsan [#1486][OPERATOR]The following fields in theCloudProfilehave been renamed:spec.ProviderConfig.MachineImages[].Versions[].capabilitySets->spec.ProviderConfig.MachineImages[].Versions[].capabilityFlavors
Please update yourCloudProfiles accordingly if you are using capabilities (currently in alpha state). by @Roncossek [#1480][DEPENDENCY]The following container images have been updated:- aws-load-balancer-controller: v2.13.3 -> v2.13.4 (singleton)
- csi-driver: v1.47.0 -> v1.50.1 (singleton)
- csi-driver-efs: v2.1.12 -> v2.1.13 (singleton)
- csi-volume-modifier: v0.5.1 -> v0.7.0 (singleton)
- csi-attacher: v4.9.0 -> v4.10.0 (singleton)
- csi-node-driver-registrar: v2.14.0 -> v2.15.0 (singleton)
- csi-liveness-probe: v2.16.0 -> v2.17.0 (singleton) by @gardener-github-actions[bot] [#1509]
[OPERATOR]Update aws-custom-route-controller from versionv0.12.0tov0.13.0. by @MartinWeindel [#1502][OPERATOR]Increase client-side QPS/burst for CSI-* components by @hendrikKahl [#1514]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.65.0 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.65.0 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.65.0
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.65.0 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.65.0
Update provider-openstack to 1.50.1
[github.com/gardener/gardener-extension-provider-openstack:v1.50.1]
π Othersβ
[OPERATOR]Fix an issue preventing OpenStack installations without manila endpoints. Flow reconciler will now do lazy instantiation of the manila client. by @kon-angelo [#1190]
Helm Chartsβ
- admission-openstack-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-application:v1.50.1 - admission-openstack-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-openstack-runtime:v1.50.1 - provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-openstack:v1.50.1
Container (OCI) Imagesβ
- gardener-extension-admission-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-openstack:v1.50.1 - gardener-extension-provider-openstack:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-openstack:v1.50.1
Update dashboard to 1.82.5
[github.com/gardener/dashboard:1.82.5]
π Bug Fixesβ
[USER]Fixed incorrect property access when checking whether SSH access is enabled, which caused the SSH key pair option to not be displayed by @gardener-github-actions[bot] [#2682]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.5
Update dashboard to 1.82.5
[github.com/gardener/dashboard:1.82.5]
π Bug Fixesβ
[USER]Fixed incorrect property access when checking whether SSH access is enabled, which caused the SSH key pair option to not be displayed by @gardener-github-actions[bot] [#2682]
Container (OCI) Imagesβ
- gardener-dashboard:
europe-docker.pkg.dev/gardener-project/releases/gardener/dashboard:1.82.5
Update provider-aws to 1.65.1
[github.com/gardener/gardener-extension-provider-aws:v1.65.1]
π Bug Fixesβ
[OPERATOR]Fix an issue with gateway endpoint validation not accepting valid DNS subdomains. by @hebelsan [#1537]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.65.1 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.65.1 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.65.1
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.65.1 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.65.1
Update provider-gcp to 1.46.1
[github.com/gardener/gardener-extension-provider-gcp:v1.46.1]
β¨ New Featuresβ
[DEVELOPER]Add GH Workflow to auto-update images inimagevector/images.yamland create a corresponding PR. by @wpross [#1199][OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto use credentials of eitherv1.Secretorsecurity.gardener.cloud/v1alpha1.WorkloadIdentityby @vpnachev [#1163]
π Bug Fixesβ
[OPERATOR]Bug in the backupentry controller not properly setting the Workload Identity token mount dirpath in the credentials configuration file for source BackupEntries has been fixed. by @vpnachev [#1213]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#1193][USER]google-guest-agentis configured to not add a route for alias IPs now. This fixes dual-stack clusters with Cilium. by @axel7born [#1197][OPERATOR]Configure kube-apiserver QPS + burst for CSI components by @hendrikKahl [#1203]
Helm Chartsβ
- admission-gcp-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-application:v1.46.1 - admission-gcp-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-runtime:v1.46.1 - provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-gcp:v1.46.1
Container (OCI) Imagesβ
- gardener-extension-admission-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-gcp:v1.46.1 - gardener-extension-provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-gcp:v1.46.1
Update provider-gcp to 1.46.2
[github.com/gardener/gardener-extension-provider-gcp:v1.46.2]
π Bug Fixesβ
[OPERATOR]Bug in the backupentry controller not properly setting the Workload Identity token mount dirpath in the credentials configuration file for source BackupEntries has been fixed. by @vpnachev [#1213]
Helm Chartsβ
- admission-gcp-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-application:v1.46.2 - admission-gcp-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-runtime:v1.46.2 - provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-gcp:v1.46.2
Container (OCI) Imagesβ
- gardener-extension-admission-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-gcp:v1.46.2 - gardener-extension-provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-gcp:v1.46.2
Update networking-cilium to 1.45.0
Helm Chartsβ
- admission-cilium-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-cilium-application:v1.45.0 - admission-cilium-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-cilium-runtime:v1.45.0 - networking-cilium:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/networking-cilium:v1.45.0
Container (OCI) Imagesβ
- gardener-extension-admission-cilium:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-cilium:v1.45.0 - gardener-extension-networking-cilium:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/networking-cilium:v1.45.0
Update provider-azure to 1.55.2
[github.com/gardener/gardener-extension-provider-azure:v1.55.2]
π Bug Fixesβ
[OPERATOR]Update mcm image to v0.17.2 by @hebelsan [#1339]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.55.2 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.55.2 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.55.2
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.55.2 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.55.2
Update gardener-controlplane to 1.130.1
[github.com/gardener/gardener:v1.130.1]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13244]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13246]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13271]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.1
Update gardener-controlplane to 1.130.1
[github.com/gardener/gardener:v1.130.1]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13244]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13246]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13271]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.1
Update gardenlet to 1.130.1
[github.com/gardener/gardener:v1.130.1]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13244]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13246]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13271]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.130.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.130.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.130.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.130.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.130.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.130.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.130.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.130.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.130.1
Update provider-aws to 1.65.2
[github.com/gardener/gardener-extension-provider-aws:v1.65.2]
π Othersβ
[OPERATOR]Update CSI driver patch version for throughput handling bug fix by @kon-angelo [#1543]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.65.2 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.65.2 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.65.2
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.65.2 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.65.2
Update gardener-metrics-exporter to 0.41.0
Update gardener-metrics-exporter to 0.41.0
Update shoot-rsyslog-relp to 0.10.2
[github.com/gardener/gardener-extension-shoot-rsyslog-relp:v0.10.2]
π Bug Fixesβ
[USER]Fixedperm used without an arch is slowerwarnings in the system integrity rules by explicitly specifying thearchparameter to beb64.
This also fixes issues when callingaugenrules --loadto load the configured audit rules. by @plkokanov [#336]
Helm Chartsβ
- shoot-rsyslog-relp-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-application:v0.10.2 - shoot-rsyslog-relp-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp-admission-runtime:v0.10.2 - shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-rsyslog-relp:v0.10.2
Container (OCI) Imagesβ
- gardener-extension-shoot-rsyslog-relp-admission:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp-admission:v0.10.2 - gardener-extension-shoot-rsyslog-relp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-rsyslog-relp:v0.10.2
Update provider-hcloud to 0.6.42
[gardener-extension-provider-hcloud] v0.6.42
Update gardener-controlplane to 1.131.0
[github.com/gardener/gardener:v1.131.0]
π° Noteworthyβ
[OPERATOR]On startupgardenlets will configure.spec.dns.defaultssettings for its respectiveSeed. Operators should adapt theirSeedmanifests to explicitly configure default DNS as.spec.dns.defaultswill become a mandatory configuration after release v1.131.0. by @dimityrmirchev [#12884]
β¨ New Featuresβ
[OPERATOR]Valitailis now replaced with an instance ofOpenTelemetry Collector. by @rrhubenov [#12846][OPERATOR]Introducedspec.settings.loadBalancerServices.zonalIngress.enabledin the Seed API. When disabled, zonal istio ingress gateways are removed and the global istio ingress gateway is used instead. by @cerealsnow [#12956][OPERATOR]gardenletnow evaluates extension health conditions first when computing the conditions of aShoot. by @rfranzke [#13231][USER]TheKubeApiServerTooManyAuditlogFailuresalert is now sent also to the shoot owners. by @vpnachev [#13177][OPERATOR]TheSeedspec was extended to allow explicit configuration for default DNS settings. Operators can configure these by setting.spec.dns.defaults. The implicit configuration that involved selecting a DNS secrets from the Garden cluster based on labels will be eventually removed. Operators should adapt theirSeedmanifests to explicitly configure default DNS. by @dimityrmirchev [#12884]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13241][OPERATOR]A bug causing gardenlet to panic during CoreDNS migration check if the Shoot is hibernated is now fixed. by @shafeeqes [#13302][USER]The early access (before the cluster creation is completed) to aShootcluster viaAdminKubeconfigcredentials is restored now when dedicated groupsgardener.cloud:system:adminsandgardener.cloud:project:adminsare used for authorization. by @vpnachev [#13299]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.4tov1.36.1. Release Notes by @gardener-ci-robot [#13170]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.3tov1.35.4. Release Notes by @gardener-ci-robot [#13159]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.2to1.27.3.gcr.io/istio-release/proxyv2from1.27.2to1.27.3.istio.io/apifromv1.27.2tov1.27.3. by @gardener-ci-robot [#13235]
[DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.0tov0.60.1. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.0tov0.60.1. by @gardener-ci-robot [#13181]
[OPERATOR]Increase client-side rate limits for provider-specific container in machine-controller-manager to--kube-api-qps=100and--kube-api-burst=200by @voelzmo [#13254][DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.42.0to0.43.0. Release Notes by @gardener-ci-robot [#13176]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.27tov2.2.28. Release Notes by @gardener-ci-robot [#13197]
[OPERATOR]Report Gardener OperatorExtensionconditions as metrics by @hown3d [#13015][DEPENDENCY]The following dependencies have been updated:gardener/coredns-config-adapterfromv0.2.0tov0.3.0. Release Notes by @DockToFuture [#13277]
[OPERATOR]Mutation of the Shoot metadata annotations such asshoot.gardener.cloud/tasksandmaintenance.shoot.gardener.cloud/needs-retry-operationis moved from theShootValidatorto theShootMutatoradmission plugin. by @ialidzhikov [#13171][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.42tov7.5.43. Release Notes by @gardener-ci-robot [#13202]
[OPERATOR]The local multi-node setup no longer relies onexternalTrafficPolicy: Localand forcing traffic through a pod on the control plane node. by @ScheererJ [#13182][OPERATOR]Add support for scraping metrics for OpenTelemetry collector on nodes by @dnaeon [#13228][OPERATOR]Support custom server blocks in node-local-dns. by @DockToFuture [#13160][DEPENDENCY]The following dependencies have been updated:quay.io/prometheus/prometheusfromv3.7.1tov3.7.2. by @gardener-ci-robot [#13253]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13263][OPERATOR]A new mutating admission plugin is introduced -ShootMutator. It is enabled by default. For more details, see theShootMutatoradmission plugin docs. by @ialidzhikov [#13156][DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.1tov0.60.2. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.1tov0.60.2. by @gardener-ci-robot [#13267]
[OPERATOR]TheNodeNotHealthyandSeedNodeNotHealthyalerts are now removed. by @vicwicker [#13150][OPERATOR]ScrapeConfigs & PrometheusRules ofblackbox-exporterare now deployed as managed-resource when type isshootby @oliver-goetz [#13178][DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13240]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.4to1.82.5. Release Notes by @gardener-ci-robot [#13250]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.36.1tov1.36.2. Release Notes by @gardener-ci-robot [#13225]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.0
Update gardener-controlplane to 1.131.0
[github.com/gardener/gardener:v1.131.0]
π° Noteworthyβ
[OPERATOR]On startupgardenlets will configure.spec.dns.defaultssettings for its respectiveSeed. Operators should adapt theirSeedmanifests to explicitly configure default DNS as.spec.dns.defaultswill become a mandatory configuration after release v1.131.0. by @dimityrmirchev [#12884]
β¨ New Featuresβ
[OPERATOR]Valitailis now replaced with an instance ofOpenTelemetry Collector. by @rrhubenov [#12846][OPERATOR]Introducedspec.settings.loadBalancerServices.zonalIngress.enabledin the Seed API. When disabled, zonal istio ingress gateways are removed and the global istio ingress gateway is used instead. by @cerealsnow [#12956][OPERATOR]gardenletnow evaluates extension health conditions first when computing the conditions of aShoot. by @rfranzke [#13231][USER]TheKubeApiServerTooManyAuditlogFailuresalert is now sent also to the shoot owners. by @vpnachev [#13177][OPERATOR]TheSeedspec was extended to allow explicit configuration for default DNS settings. Operators can configure these by setting.spec.dns.defaults. The implicit configuration that involved selecting a DNS secrets from the Garden cluster based on labels will be eventually removed. Operators should adapt theirSeedmanifests to explicitly configure default DNS. by @dimityrmirchev [#12884]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13241][OPERATOR]A bug causing gardenlet to panic during CoreDNS migration check if the Shoot is hibernated is now fixed. by @shafeeqes [#13302][USER]The early access (before the cluster creation is completed) to aShootcluster viaAdminKubeconfigcredentials is restored now when dedicated groupsgardener.cloud:system:adminsandgardener.cloud:project:adminsare used for authorization. by @vpnachev [#13299]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.4tov1.36.1. Release Notes by @gardener-ci-robot [#13170]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.3tov1.35.4. Release Notes by @gardener-ci-robot [#13159]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.2to1.27.3.gcr.io/istio-release/proxyv2from1.27.2to1.27.3.istio.io/apifromv1.27.2tov1.27.3. by @gardener-ci-robot [#13235]
[DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.0tov0.60.1. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.0tov0.60.1. by @gardener-ci-robot [#13181]
[OPERATOR]Increase client-side rate limits for provider-specific container in machine-controller-manager to--kube-api-qps=100and--kube-api-burst=200by @voelzmo [#13254][DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.42.0to0.43.0. Release Notes by @gardener-ci-robot [#13176]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.27tov2.2.28. Release Notes by @gardener-ci-robot [#13197]
[OPERATOR]Report Gardener OperatorExtensionconditions as metrics by @hown3d [#13015][DEPENDENCY]The following dependencies have been updated:gardener/coredns-config-adapterfromv0.2.0tov0.3.0. Release Notes by @DockToFuture [#13277]
[OPERATOR]Mutation of the Shoot metadata annotations such asshoot.gardener.cloud/tasksandmaintenance.shoot.gardener.cloud/needs-retry-operationis moved from theShootValidatorto theShootMutatoradmission plugin. by @ialidzhikov [#13171][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.42tov7.5.43. Release Notes by @gardener-ci-robot [#13202]
[OPERATOR]The local multi-node setup no longer relies onexternalTrafficPolicy: Localand forcing traffic through a pod on the control plane node. by @ScheererJ [#13182][OPERATOR]Add support for scraping metrics for OpenTelemetry collector on nodes by @dnaeon [#13228][OPERATOR]Support custom server blocks in node-local-dns. by @DockToFuture [#13160][DEPENDENCY]The following dependencies have been updated:quay.io/prometheus/prometheusfromv3.7.1tov3.7.2. by @gardener-ci-robot [#13253]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13263][OPERATOR]A new mutating admission plugin is introduced -ShootMutator. It is enabled by default. For more details, see theShootMutatoradmission plugin docs. by @ialidzhikov [#13156][DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.1tov0.60.2. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.1tov0.60.2. by @gardener-ci-robot [#13267]
[OPERATOR]TheNodeNotHealthyandSeedNodeNotHealthyalerts are now removed. by @vicwicker [#13150][OPERATOR]ScrapeConfigs & PrometheusRules ofblackbox-exporterare now deployed as managed-resource when type isshootby @oliver-goetz [#13178][DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13240]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.4to1.82.5. Release Notes by @gardener-ci-robot [#13250]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.36.1tov1.36.2. Release Notes by @gardener-ci-robot [#13225]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.0
Update gardenlet to 1.131.0
[github.com/gardener/gardener:v1.131.0]
π° Noteworthyβ
[OPERATOR]On startupgardenlets will configure.spec.dns.defaultssettings for its respectiveSeed. Operators should adapt theirSeedmanifests to explicitly configure default DNS as.spec.dns.defaultswill become a mandatory configuration after release v1.131.0. by @dimityrmirchev [#12884]
β¨ New Featuresβ
[OPERATOR]Valitailis now replaced with an instance ofOpenTelemetry Collector. by @rrhubenov [#12846][OPERATOR]Introducedspec.settings.loadBalancerServices.zonalIngress.enabledin the Seed API. When disabled, zonal istio ingress gateways are removed and the global istio ingress gateway is used instead. by @cerealsnow [#12956][OPERATOR]gardenletnow evaluates extension health conditions first when computing the conditions of aShoot. by @rfranzke [#13231][USER]TheKubeApiServerTooManyAuditlogFailuresalert is now sent also to the shoot owners. by @vpnachev [#13177][OPERATOR]TheSeedspec was extended to allow explicit configuration for default DNS settings. Operators can configure these by setting.spec.dns.defaults. The implicit configuration that involved selecting a DNS secrets from the Garden cluster based on labels will be eventually removed. Operators should adapt theirSeedmanifests to explicitly configure default DNS. by @dimityrmirchev [#12884]
π Bug Fixesβ
[OPERATOR]An issue has been fixed which was preventinggardenletfrom registering itsGardenletresource whenselfUpgradewas set in its Helm chart values. by @rfranzke [#13241][OPERATOR]A bug causing gardenlet to panic during CoreDNS migration check if the Shoot is hibernated is now fixed. by @shafeeqes [#13302][USER]The early access (before the cluster creation is completed) to aShootcluster viaAdminKubeconfigcredentials is restored now when dedicated groupsgardener.cloud:system:adminsandgardener.cloud:project:adminsare used for authorization. by @vpnachev [#13299]
π Othersβ
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.4tov1.36.1. Release Notes by @gardener-ci-robot [#13170]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.35.3tov1.35.4. Release Notes by @gardener-ci-robot [#13159]
[DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.2to1.27.3.gcr.io/istio-release/proxyv2from1.27.2to1.27.3.istio.io/apifromv1.27.2tov1.27.3. by @gardener-ci-robot [#13235]
[DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.0tov0.60.1. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.0tov0.60.1. by @gardener-ci-robot [#13181]
[OPERATOR]Increase client-side rate limits for provider-specific container in machine-controller-manager to--kube-api-qps=100and--kube-api-burst=200by @voelzmo [#13254][DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.42.0to0.43.0. Release Notes by @gardener-ci-robot [#13176]
[DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.27tov2.2.28. Release Notes by @gardener-ci-robot [#13197]
[OPERATOR]Report Gardener OperatorExtensionconditions as metrics by @hown3d [#13015][DEPENDENCY]The following dependencies have been updated:gardener/coredns-config-adapterfromv0.2.0tov0.3.0. Release Notes by @DockToFuture [#13277]
[OPERATOR]Mutation of the Shoot metadata annotations such asshoot.gardener.cloud/tasksandmaintenance.shoot.gardener.cloud/needs-retry-operationis moved from theShootValidatorto theShootMutatoradmission plugin. by @ialidzhikov [#13171][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.42tov7.5.43. Release Notes by @gardener-ci-robot [#13202]
[OPERATOR]The local multi-node setup no longer relies onexternalTrafficPolicy: Localand forcing traffic through a pod on the control plane node. by @ScheererJ [#13182][OPERATOR]Add support for scraping metrics for OpenTelemetry collector on nodes by @dnaeon [#13228][OPERATOR]Support custom server blocks in node-local-dns. by @DockToFuture [#13160][DEPENDENCY]The following dependencies have been updated:quay.io/prometheus/prometheusfromv3.7.1tov3.7.2. by @gardener-ci-robot [#13253]
[OPERATOR]Fixed an issue that caused theworker-pools-operatingsystemconfig-hashessecret to be created as immutable during the restore phase of control plane migration. by @plkokanov [#13263][OPERATOR]A new mutating admission plugin is introduced -ShootMutator. It is enabled by default. For more details, see theShootMutatoradmission plugin docs. by @ialidzhikov [#13156][DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.60.1tov0.60.2. Release Notesgithub.com/gardener/machine-controller-managerfromv0.60.1tov0.60.2. by @gardener-ci-robot [#13267]
[OPERATOR]TheNodeNotHealthyandSeedNodeNotHealthyalerts are now removed. by @vicwicker [#13150][OPERATOR]ScrapeConfigs & PrometheusRules ofblackbox-exporterare now deployed as managed-resource when type isshootby @oliver-goetz [#13178][DEPENDENCY]The following dependencies have been updated:gardener/autoscalerfromv1.32.1tov1.32.2. Release Notes by @gardener-ci-robot [#13240]
[DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.82.4to1.82.5. Release Notes by @gardener-ci-robot [#13250]
[DEPENDENCY]The following dependencies have been updated:envoyproxy/envoyfromdistroless-v1.36.1tov1.36.2. Release Notes by @gardener-ci-robot [#13225]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.0
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.0 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.0 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.0 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.0 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.0 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.0 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.0 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.0
Update provider-aws to 1.65.3
[github.com/gardener/gardener-extension-provider-aws:v1.65.3]
π Bug Fixesβ
[OPERATOR]Revert to v1.47.1 due to a regression in the calculation of allocatable volumes by @hebelsan [#1549]
Helm Chartsβ
- admission-aws-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-application:v1.65.3 - admission-aws-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-aws-runtime:v1.65.3 - provider-aws:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-aws:v1.65.3
Container (OCI) Imagesβ
- gardener-extension-admission-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-aws:v1.65.3 - gardener-extension-provider-aws:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-aws:v1.65.3
Update provider-alicloud to 1.66.0
[github.com/gardener/gardener-extension-provider-alicloud:v1.66.0]
β¨ New Featuresβ
[OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto refer only to credentials of typev1.Secret. by @vpnachev [#837]
π Othersβ
[OPERATOR]Configure kube-apiserver QPS + burst for CSI components by @hendrikKahl [#843][OPERATOR]Include error protection when deleting a vSwitch during reconciliation. To prevent this error, you can annotate the infrastructure with alicloud.provider.extensions.gardener.cloud/flow-reconcile-can-delete-resource=true by @kevin-lacoo [#845][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#841]
Helm Chartsβ
- admission-alicloud-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-alicloud-application:v1.66.0 - admission-alicloud-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-alicloud-runtime:v1.66.0 - provider-alicloud:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-alicloud:v1.66.0
Container (OCI) Imagesβ
- gardener-extension-admission-alicloud:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-alicloud:v1.66.0 - gardener-extension-provider-alicloud:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-alicloud:v1.66.0
Update cert-management to 0.19.0
[github.com/gardener/cert-management:v0.19.0]
π Othersβ
[USER]Allow to request intermediate CA certificates for CA issuers by @MartinWeindel [#601][USER]Support annotationgardener.cloud/operation=reconcileforCertificateandIssuerresources.
If it is set for aCertificatewith back-off status, it is cleared to enable immediate reconciliation. by @MartinWeindel [#600]
Helm Chartsβ
- cert-controller-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/cert-controller-manager:v0.19.0
Container (OCI) Imagesβ
- cert-management:
europe-docker.pkg.dev/gardener-project/releases/cert-controller-manager:v0.19.0
Update provider-azure to 1.56.0
[github.com/gardener/gardener-extension-provider-azure:v1.56.0]
β οΈ Breaking Changesβ
[OPERATOR]Remove support for availability-sets. Operators should make sure that all availability-set-based shoots have migrated to VMSS. by @kon-angelo [#1325]
β¨ New Featuresβ
[DEVELOPER]Add GH Workflow to auto-update images inimagevector/images.yamland create a corresponding PR. by @wpross [#1287][OPERATOR]Add field for passing os disk caching type by @hebelsan [#1259][OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto use credentials of eitherv1.Secretorsecurity.gardener.cloud/v1alpha1.WorkloadIdentityby @vpnachev [#1277]
π Bug Fixesβ
[OPERATOR]AllNamespacedCloudProfileMachineImageVersionsare all merged into its status, instead of only writing the last one by @Roncossek [#1336]
π Othersβ
[DEPENDENCY]The following container images have been updated:- cloud-controller-manager: v1.30.13 -> v1.30.15 (patch)
- cloud-controller-manager: v1.31.7 -> v1.31.9 (patch)
- cloud-controller-manager: v1.32.6 -> v1.32.8 (patch)
- cloud-controller-manager: v1.33.1 -> v1.33.3 (patch)
- cloud-node-manager: v1.30.13 -> v1.30.15 (patch)
- cloud-node-manager: v1.31.7 -> v1.31.9 (patch)
- cloud-node-manager: v1.32.6 -> v1.32.8 (patch)
- cloud-node-manager: v1.33.1 -> v1.33.3 (patch)
- csi-driver-disk: v1.32.4 -> v1.33.3 (singleton)
- csi-driver-file: v1.32.1 -> v1.33.3 (singleton)
- csi-provisioner: v5.2.0 -> v5.3.0 (singleton)
- csi-attacher: v4.8.1 -> v4.10.0 (singleton)
- csi-snapshotter: v8.2.1 -> v8.3.0 (singleton)
- csi-snapshot-controller: v8.2.1 -> v8.3.0 (singleton)
- csi-resizer: v1.13.2 -> v1.14.0 (singleton)
- csi-node-driver-registrar: v2.13.0 -> v2.15.0 (singleton)
- csi-liveness-probe: v2.15.0 -> v2.17.0 (singleton) by @gardener-github-actions[bot] [#1312]
[OPERATOR]Configure kube-apiserver QPS + burst for CSI components by @hendrikKahl [#1319][OPERATOR]Remove ForceNatGateway feature gate after the updated announcement by Microsoft by @kon-angelo [#1299][OPERATOR]Update gardener/gardener to v1.130.0 and other go mod dependencies by @hebelsan [#1334][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#1307][OPERATOR]Update mcm image to v0.17.1 by @hebelsan [#1322]
Helm Chartsβ
- admission-azure-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-application:v1.56.0 - admission-azure-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-azure-runtime:v1.56.0 - provider-azure:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-azure:v1.56.0
Container (OCI) Imagesβ
- gardener-extension-admission-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-azure:v1.56.0 - gardener-extension-provider-azure:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-azure:v1.56.0
Update provider-gcp to 1.47.0
[github.com/gardener/gardener-extension-provider-gcp:v1.47.0]
β¨ New Featuresβ
[USER]Set enable-data-cache on the CSI-driver if shoot annotation gcp.provider.extensions.gardener.cloud/enable-csi-data-cache is set by @hebelsan [#1059][DEVELOPER]Add GH Workflow to auto-update images inimagevector/images.yamland create a corresponding PR. by @wpross [#1199][OPERATOR]Admission controller now allowsseed.spec.backup.credentialsRefandbackupBucket.spec.credentialsRefto use credentials of eitherv1.Secretorsecurity.gardener.cloud/v1alpha1.WorkloadIdentityby @vpnachev [#1163]
π Bug Fixesβ
[OPERATOR]Bug in the backupentry controller not properly setting the Workload Identity token mount dirpath in the credentials configuration file for source BackupEntries has been fixed. by @vpnachev [#1209][OPERATOR]AllNamespacedCloudProfileMachineImageVersionsare all merged into its status, instead of only writing the last one by @Roncossek [#1212]
π Othersβ
[OPERATOR]Deny dual-stack migration if overlay is not explicitly disabled. by @DockToFuture [#1185][USER]google-guest-agentis configured to not add a route for alias IPs now. This fixes dual-stack clusters with Cilium. by @axel7born [#1197][OPERATOR]Remove cleanup function FirewallRuleAllowExternalName by @hebelsan [#1218][OPERATOR]Migration from dual-stack IPv6, IPv4 is now supported. by @axel7born [#1171][OPERATOR]Update gardener/gardener to v1.130.0 and other dependencies by @hebelsan [#1214][OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#1193][OPERATOR]Configure kube-apiserver QPS + burst for CSI components by @hendrikKahl [#1203][DEPENDENCY]The following container images have been updated:- cloud-controller-manager: v32.2.4 -> v32.2.5 (patch)
- machine-controller-manager-provider-gcp: v0.25.0 -> v0.26.0 (singleton)
- csi-driver: v1.17.12 -> v1.17.14 (singleton)
- csi-provisioner: v5.2.0 -> v5.3.0 (singleton)
- csi-attacher: v4.8.1 -> v4.10.0 (singleton)
- csi-resizer: v1.13.2 -> v1.14.0 (singleton)
- csi-snapshotter: v8.2.1 -> v8.3.0 (singleton)
- csi-snapshot-controller: v8.2.1 -> v8.3.0 (singleton)
- csi-node-driver-registrar: v2.13.0 -> v2.15.0 (singleton)
- csi-liveness-probe: v2.15.0 -> v2.17.0 (singleton) by @gardener-github-actions[bot] [#1211]
Helm Chartsβ
- admission-gcp-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-application:v1.47.0 - admission-gcp-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/admission-gcp-runtime:v1.47.0 - provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/provider-gcp:v1.47.0
Container (OCI) Imagesβ
- gardener-extension-admission-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-gcp:v1.47.0 - gardener-extension-provider-gcp:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/provider-gcp:v1.47.0
Update shoot-cert-service to 1.55.0
Update external-dns-management to 0.30.0
Update shoot-dns-service to 1.71.0
[github.com/gardener/gardener-extension-shoot-dns-service:v1.71.0]
π Bug Fixesβ
[OPERATOR]Fix handling custom resources in the shoot cluster on shoot deletion to avoid dead lock. by @MartinWeindel [#580]
π Othersβ
[OPERATOR]Migrate the extension VPAs from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#570][OPERATOR]Add default resources for admission deployment. by @MartinWeindel [#556]
[github.com/gardener/external-dns-management:v0.29.0]
β οΈ Breaking Changesβ
[USER]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645][OPERATOR]Theinfoblox-dnsprovider is deprecated and will be removed end of 2025. by @MartinWeindel [#645]
β¨ New Featuresβ
[OPERATOR]Support command line option--kubeconfig.crds-shoot-no-cleanup-labelto allow to set the labelshoot.gardener.cloud/no-cleanup=truefor deployed CRDs. by @MartinWeindel [#674]
π Bug Fixesβ
[OPERATOR][netlify-dns] Allow underscore character on validating the API token for netlify. by @MartinWeindel [#644]
π Othersβ
[OPERATOR]Migrate the workload VPA from the deprecated update modeAutoto its only fallback strategy - update modeRecreate. by @vitanovs [#671][OPERATOR]Update cloudflare-dns to use the Version 6 ofgithub.com/cloudflare/cloudflare-go/v6. by @MartinWeindel [#640][OPERATOR]Aligned zone metrics handling in Azure DNS and Azure Private DNS providers with all other DNS providers. by @marc1404 [#667][OPERATOR]Simplify build workflow, drop redundantcheckstep. by @MartinWeindel [#658]
Helm Chartsβ
- shoot-dns-service-admission-application:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-application:v1.71.0 - shoot-dns-service-admission-runtime:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service-admission-runtime:v1.71.0 - shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/extensions/shoot-dns-service:v1.71.0
Container (OCI) Imagesβ
- gardener-extension-admission-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/admission-shoot-dns-service:v1.71.0 - gardener-extension-shoot-dns-service:
europe-docker.pkg.dev/gardener-project/releases/gardener/extensions/shoot-dns-service:v1.71.0
Update gardener-controlplane to 1.131.1
[github.com/gardener/gardener:v1.131.1]
π Bug Fixesβ
[USER]The feature for supporting custom server blocks in node-local-dns is now reverted. by @Kostov6 [#13354][USER]An issue with the configuration for theOpenTelemetryCollectoron the nodes that leads to missing kernel logs inValiis now fixed. by @rrhubenov [#13330]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.1
Update gardener-controlplane to 1.131.1
[github.com/gardener/gardener:v1.131.1]
π Bug Fixesβ
[USER]The feature for supporting custom server blocks in node-local-dns is now reverted. by @Kostov6 [#13354][USER]An issue with the configuration for theOpenTelemetryCollectoron the nodes that leads to missing kernel logs inValiis now fixed. by @rrhubenov [#13330]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.1
Update gardenlet to 1.131.1
[github.com/gardener/gardener:v1.131.1]
π Bug Fixesβ
[USER]The feature for supporting custom server blocks in node-local-dns is now reverted. by @Kostov6 [#13354][USER]An issue with the configuration for theOpenTelemetryCollectoron the nodes that leads to missing kernel logs inValiis now fixed. by @rrhubenov [#13330]
Helm Chartsβ
- controlplane:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.131.1
Container (OCI) Imagesβ
- admission-controller:
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.131.1 - apiserver:
europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.131.1 - controller-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.131.1 - gardenlet:
europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.131.1 - node-agent:
europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.131.1 - operator:
europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.131.1 - resource-manager:
europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.131.1 - scheduler:
europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.131.1