Skip to content

Commit

Permalink
Semi-automatic update of generated content (#2195)
Browse files Browse the repository at this point in the history
* Update self-generated content

* Update self-generated content

---------

Co-authored-by: Create or Update Pull Request Action <[email protected]>
  • Loading branch information
taylorbot and Create or Update Pull Request Action authored Apr 30, 2024
1 parent 2d45dc9 commit 244bce0
Show file tree
Hide file tree
Showing 6 changed files with 1,084 additions and 866 deletions.
17 changes: 17 additions & 0 deletions src/content/changes/cluster-apps-for-aws/cluster-aws/v0.73.0.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
---
# Generated by scripts/aggregate-changelogs. WARNING: Manual edits to this files will be overwritten.
changes_categories:
- Cluster apps for AWS
changes_entry:
repository: giantswarm/cluster-aws
url: https://github.com/giantswarm/cluster-aws/blob/master/CHANGELOG.md#0730---2024-04-30
version: 0.73.0
version_tag: v0.73.0
date: '2024-04-30T10:13:17'
description: Changelog entry for giantswarm/cluster-aws version 0.73.0, published
on 30 April 2024, 10:13.
title: cluster-aws release v0.73.0
---

### Added
- Add `log` volume to control-plane nodes.
17 changes: 17 additions & 0 deletions src/content/changes/managed-apps/kong-app/v4.1.0.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,17 @@
---
# Generated by scripts/aggregate-changelogs. WARNING: Manual edits to this files will be overwritten.
changes_categories:
- Managed Apps
changes_entry:
repository: giantswarm/kong-app
url: https://github.com/giantswarm/kong-app/blob/master/CHANGELOG.md#410---2024-04-29
version: 4.1.0
version_tag: v4.1.0
date: '2024-04-29T13:02:13'
description: Changelog entry for giantswarm/kong-app version 4.1.0, published on 29
April 2024, 13:02.
title: kong-app release v4.1.0
---

### Changed
- Update kong ingress controller to [3.1.4](https://github.com/Kong/kubernetes-ingress-controller/blob/v3.1.4/CHANGELOG.md#314)
Original file line number Diff line number Diff line change
@@ -0,0 +1,184 @@
---
# Generated by scripts/aggregate-changelogs. WARNING: Manual edits to this files will be overwritten.
aliases:
- /changes/tenant-cluster-releases-aws/releases/aws-v20.1.0/
changes_categories:
- Workload cluster releases for AWS
changes_entry:
repository: giantswarm/releases
url: https://github.com/giantswarm/releases/tree/master/aws/v20.1.0
version: 20.1.0
version_tag: v20.1.0
date: '2024-04-24T14:26:26'
description: Release notes for AWS workload cluster release v20.1.0, published on
24 April 2024, 14:26.
title: Workload cluster release v20.1.0 for AWS
---

This release provides security updates for container linux and a fix for IMDSv2 only clusters.

## Change details


### aws-operator [16.1.1](https://github.com/giantswarm/aws-operator/releases/tag/v16.1.1)

#### Fixed
- Bump k8scc to fix issues with IMDS v2.



### cert-operator [3.4.0](https://github.com/giantswarm/cert-operator/releases/tag/v3.4.0)

#### Changed
- Avoid exiting with a failure at startup time if the PKI cleanup fails.



### cluster-operator [5.11.0](https://github.com/giantswarm/cluster-operator/releases/tag/v5.11.0)

#### Changed
- Configure `gsoci.azurecr.io` as the default container image registry.
#### Added
- Add team label in resources.
- Add `global.podSecurityStandards.enforced` value for PSS migration.



### containerlinux [3815.2.2](https://www.flatcar-linux.org/releases/#release-3815.2.2)

_Changes since **Stable 3815.2.1**_

#### Security fixes:

- Linux ([CVE-2023-28746](https://nvd.nist.gov/vuln/detail/CVE-2023-28746), [CVE-2023-47233](https://nvd.nist.gov/vuln/detail/CVE-2023-47233), [CVE-2023-52639](https://nvd.nist.gov/vuln/detail/CVE-2023-52639), [CVE-2023-6270](https://nvd.nist.gov/vuln/detail/CVE-2023-6270), [CVE-2023-7042](https://nvd.nist.gov/vuln/detail/CVE-2023-7042), [CVE-2024-22099](https://nvd.nist.gov/vuln/detail/CVE-2024-22099), [CVE-2024-23307](https://nvd.nist.gov/vuln/detail/CVE-2024-23307), [CVE-2024-24861](https://nvd.nist.gov/vuln/detail/CVE-2024-24861), [CVE-2024-26584](https://nvd.nist.gov/vuln/detail/CVE-2024-26584), [CVE-2024-26585](https://nvd.nist.gov/vuln/detail/CVE-2024-26585), [CVE-2024-26642](https://nvd.nist.gov/vuln/detail/CVE-2024-26642), [CVE-2024-26651](https://nvd.nist.gov/vuln/detail/CVE-2024-26651), [CVE-2024-26654](https://nvd.nist.gov/vuln/detail/CVE-2024-26654), [CVE-2024-26659](https://nvd.nist.gov/vuln/detail/CVE-2024-26659), [CVE-2024-26686](https://nvd.nist.gov/vuln/detail/CVE-2024-26686), [CVE-2024-26700](https://nvd.nist.gov/vuln/detail/CVE-2024-26700), [CVE-2024-26809](https://nvd.nist.gov/vuln/detail/CVE-2024-26809))
- Downgraded xz-utils to 5.4.2 as precaution even though Flatcar is not affected of the SSH backdoor ([CVE-2024-3094](https://nvd.nist.gov/vuln/detail/CVE-2024-3094))
- openssh ([CVE-2023-48795](https://nvd.nist.gov/vuln/detail/CVE-2023-48795), [CVE-2023-51384](https://nvd.nist.gov/vuln/detail/CVE-2023-51384), [CVE-2023-51385](https://nvd.nist.gov/vuln/detail/CVE-2023-51385))

#### Bug fixes:

- Disabled user-configdrive.service on OpenStack when config drive is used, which caused the hostname to be overwritten. The coreos-cloudinit.service unit already runs on OpenStack if the system is not configured via ignition. ([Flatcar#1385](https://github.com/flatcar/Flatcar/issues/1385))
- Fixed `toolbox` to prevent mounted `ctr` snapshots from being garbage-collected ([toolbox#9](https://github.com/flatcar/toolbox/pull/9))

#### Changes:

- Disabled real-time priority for multipathd as it prevents the cgroups2 cpu controller from working. ([scripts#1771](https://github.com/flatcar/scripts/pull/1771))
- SDK: Unified qemu image formats, so that the `qemu_uefi` build target provides the regular `qemu` and the `qemu_uefi_secure` artifacts ([scripts#1847](https://github.com/flatcar/scripts/pull/1847))

#### Updates:

- Linux ([6.1.85](https://lwn.net/Articles/969355) (includes [6.1.84](https://lwn.net/Articles/968254), [6.1.83](https://lwn.net/Articles/966759), [6.1.82](https://lwn.net/Articles/965607)))
- ca-certificates ([3.99](https://firefox-source-docs.mozilla.org/security/nss/releases/nss_3_99.html))
- openssh ([9.6p1](https://www.openssh.com/releasenotes.html#9.6p1))



### etcd [3.5.13](https://github.com/etcd-io/etcd/releases/tag/v3.5.13)

#### etcd server
- Fix leases wrongly revoked by the leader by [ignoring old leader's leases revoking request](https://github.com/etcd-io/etcd/pull/17425).
- Fix [no progress notification being sent for watch that doesn't get any events](https://github.com/etcd-io/etcd/pull/17566).
- Fix [watch event loss after compaction](https://github.com/etcd-io/etcd/pull/17612).
#### Package `clientv3`
- Add [client backoff and retry config options](https://github.com/etcd-io/etcd/pull/17363).
- [Ignore SetKeepAlivePeriod errors on OpenBSD](https://github.com/etcd-io/etcd/pull/17387).
- [Support unix/unixs socket in client or peer URLs](https://github.com/etcd-io/etcd/pull/15940)
#### gRPC Proxy
- Add [three flags (see below) for grpc-proxy](https://github.com/etcd-io/etcd/pull/17447)
- `--dial-keepalive-time`
- `--dial-keepalive-timeout`
- `--permit-without-stream`
#### Dependencies
- Upgrade [bbolt to v1.3.9](https://github.com/etcd-io/etcd/pull/17483).
- Compile binaries using [go 1.21.8](https://github.com/etcd-io/etcd/pull/17537).
- Upgrade [google.golang.org/protobuf to v1.33.0 to address CVE-2024-24786](https://github.com/etcd-io/etcd/pull/17553).
- Upgrade github.com/sirupsen/logrus to v1.9.3 to address [PRISMA-2023-0056](https://github.com/etcd-io/etcd/pull/17482).
#### Others
- [Make CGO_ENABLED configurable](https://github.com/etcd-io/etcd/pull/17421).



### app-operator [6.11.0](https://github.com/giantswarm/app-operator/releases/tag/v6.11.0)

#### Added
- Add support for App resources having a dependency on HelmReleases.



### vertical-pod-autoscaler [5.2.1](https://github.com/giantswarm/vertical-pod-autoscaler-app/releases/tag/v5.2.1)

#### Changed
- Chart: Update `appVersion` and `README.md`. ([#281](https://github.com/giantswarm/vertical-pod-autoscaler-app/pull/281))



### etcd-kubernetes-resources-count-exporter [1.10.0](https://github.com/giantswarm/etcd-kubernetes-resources-count-exporter/releases/tag/v1.10.0)

#### Changed
- Set min VPA settings and adjust CPU and memory resources.
- Use PodMonitor instead of legacy labels for monitoring.



### vertical-pod-autoscaler-crd [3.1.0](https://github.com/giantswarm/vertical-pod-autoscaler-crd/releases/tag/v3.1.0)

- Chart: Sync CRDs to VPA v1.1.0. ([#93](https://github.com/giantswarm/vertical-pod-autoscaler-crd/pull/93))



### observability-bundle [1.3.4](https://github.com/giantswarm/observability-bundle/releases/tag/v1.3.4)

#### Changed
- Upgrade `kube-prometheus-stack` to 9.1.2.



### k8s-audit-metrics [0.9.0](https://github.com/giantswarm/k8s-audit-metrics/releases/tag/v0.9.0)

#### Added
- Add team label in resources.
- Use ServiceMonitor for monitoring.
#### Changed
- Configure `gsoci.azurecr.io` as the default container image registry.



### cert-manager [3.7.4](https://github.com/giantswarm/cert-manager-app/releases/tag/v3.7.4)

#### Added
- Added support for `AzureDNS` integration with a `Service Principal` on `clusterIssuer` helm chart .
#### Changed
- Changed `appVersion` to `v1.14.2`



### chart-operator [3.2.1](https://github.com/giantswarm/chart-operator/releases/tag/v3.2.1)

#### Fixed
- Use separate rest configs for different Kubernetes clients.



### cilium [0.22.0](https://github.com/giantswarm/cilium-app/releases/tag/v0.22.0)

#### Added
- Add helm values schema.
#### Changed
- Add safe-to-evict annotations to Hubble Relay and UI pods.
- Enable deletion of extra network policies.
- Update team label to `cabbage`



### cluster-autoscaler [1.25.3-gs2](https://github.com/giantswarm/cluster-autoscaler-app/releases/tag/v1.25.3-gs2)

#### Added
- Add possibility to use egress proxy.
#### Changed
- Chart: Improve proxy settings. ([#249](https://github.com/giantswarm/cluster-autoscaler-app/pull/249))



### external-dns [3.1.0](https://github.com/giantswarm/external-dns-app/releases/tag/v3.1.0)

#### Changed
- Remove default namespaceFilter configuration. ([#324](https://github.com/giantswarm/external-dns-app/pull/324)).
Loading

0 comments on commit 244bce0

Please sign in to comment.