Update module github.com/gardener/gardener to v1.138.0#471
Open
gardener-ci-robot wants to merge 1 commit intomasterfrom
Open
Update module github.com/gardener/gardener to v1.138.0#471gardener-ci-robot wants to merge 1 commit intomasterfrom
gardener-ci-robot wants to merge 1 commit intomasterfrom
Conversation
Contributor
Author
|
|
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: The full list of commands accepted by this bot can be found here. DetailsNeeds approval from an approver in each of these files:Approvers can indicate their approval by writing |
ef75f1e to
d81d651
Compare
d81d651 to
510d96b
Compare
510d96b to
1414446
Compare
1414446 to
b7967c5
Compare
b7967c5 to
f794c45
Compare
c36181a to
3a4952a
Compare
3a4952a to
1a2e5b3
Compare
1a2e5b3 to
0e7f959
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v1.136.3→v1.138.0Release Notes
gardener/gardener (github.com/gardener/gardener)
v1.138.0Compare Source
[github.com/gardener/gardener:v1.138.0]
[DEVELOPER]provider-extensionssetup has been replaced byremotesetup which isgardener-operatorbased. by @oliver-goetz [#13994][DEVELOPER]Makefile targetmake check-vulnerabilitiesandGO_VULN_CHECKhas been removed. by @acumino [#14143][DEVELOPER]The local setup no longer requires manipulating the /etc/hosts file manually. Instead, a bind9 hosts thelocal.gardener.cloudDNS zone (accessible via 172.18.255.53 or fd00:ff::53).Manual actions:
local.gardener.cloudlocal.gardener.cloudDNS zone via the local bind9 server. by @timebertt [#14062][DEVELOPER]The kubeconfig of the runtime cluster in local setup was moved from./example/gardener-local/kind/multi-zone/kubeconfigto./dev-setup/kubeconfigs/runtime/kubeconfig. by @oliver-goetz [#13994]📰 Noteworthy
[OPERATOR]Garden.spec.virtualCluster.gardener.gardenerDiscoveryServernow accepts optionaldomainandtlsSecretNamefields. Operators can use these to expose the OIDC discovery endpoint under a custom domain and optionally with a non-wildcard certificate. Additionally, validation now prevents disabling the discovery server once it is enabled, protecting already-issued tokens. The default behaviour is unchanged. by @jamand [#14126][OPERATOR]prometheus-garden aggregates volume usage metrics from all seeds by @Kostov6 [#13818][OPERATOR]Hard limits on nodelocaldns node cache have been removed. by @domdom82 [#14200][OPERATOR]Hard memory limit on istio-ingress has been removed. Memory is managed by VPA in all cases now. by @domdom82 [#14197][OPERATOR]TheVPAInPlaceUpdatesfeature gate has been promoted to Beta and is enabled by default. by @vitanovs [#14145]✨ New Features
[USER]gardenadm init/joinnow supports--zone/-zflag to specify the node's availability zone. by @acumino [#14081][DEVELOPER]Added optional DisplayName field to ShootAdvertisedAddress allowing UI friendly names for advertised endpoints via the endpoint.shoot.gardener.cloud/displayName Ingress label. by @nickytd [#14140][DEVELOPER]gardener-node-agentcan optionally coordinateOperatingSystemConfigreconciliation amongst other instances. This is helpful if you want to ensure that only one instance reconciles at a time. Read all about it here. by @rfranzke [#14129]🐛 Bug Fixes
[OPERATOR]Fixed a race condition in theControllerInstallationreconciler that could create duplicate installations due to reading from a stale informer cache instead of the API server. by @rickardsjp [#14274][OPERATOR]Add a network policy label for allowing communication from the OpenTelemetryCollector in the control plane to the Shoot Kubernetes API Server. by @rrhubenov [#14196][OPERATOR]The per-worker-poolnode-local-dnsDaemonsets now also include the name of the worker in their label selector and in their Pods' labels. This resolves an issue where each of the correspondingVPAs targeted allnode-cachecontainers from all of theseDaemonsetsresulting in incorrect resource recommendations. by @plkokanov [#14294][OPERATOR]An issues has been fixed causinggardener-resource-managercrash loops in large clusters. by @timuthy [#14212][USER]The machines of a deleted worker pool are able to join back cluster in healthy state. by @aniruddha2000 [#13715][DEVELOPER]The healthcheck controller now supports the seed extension class. by @hown3d [#14162][DEPENDENCY]Fixing an issue where CA scale-downs were getting stuck when MCD replicas was updated with stale cache value of worker-controller by @r4mek [#14291]🏃 Others
[OPERATOR]The dependency-watchdog component no longer defines resource limits. by @ashwani2k [#14193][OPERATOR]Fluent-bit resource limits are increased. by @nickytd [#14205][OPERATOR]CoreDNS memory limit has been removed. by @domdom82 [#14163][OPERATOR]The following dependency has been updated:golang.org/x/netfromv0.50.0tov0.51.0. by @ScheererJ [#14234][OPERATOR]Fix CRD conversion webhook metric name by @chrkl [#14209][OPERATOR]Following logging stack components are updatedfluent-bitto v4.2.3,fluent-bit-pluginto v1.2.0 andfluent-operatorto v3.7.0 by @nickytd [#14256][OPERATOR]A regression in Gardener Node Agent that can occur on Debian based OS images and that prevents it to successfully reconcile nodes that run a containerd version that contains - according to semver - invalid characters in its version number was fixed. by @MrBatschner [#14177][OPERATOR]TheUseUnifiedHTTPProxyPort(part of GEP-30) can be disabled without disruption to shoots already using the unified HTTP proxy port. by @maboehm [#14169][OPERATOR]Add startup probe to gardener-metrics-exporter by @chrkl [#14207][OPERATOR]AddednodeCIDRMaskSizeIPv6field toKubeControllerManagerConfigto allow configuring the IPv6 node CIDR mask size (defaults to 64). This enables more flexible IPv6 network configurations in both dual-stack and IPv6-only clusters. by @axel7born [#13955][DEVELOPER]A newsupported-kubernetes-versions.yamlfile is introduced in the root of the project. It describes the supported Kubernetes versions by Gardener in a machine-readable format. A machinery can use this file to build automation for the supported Kubernetes versions in a CloudProfile. by @ialidzhikov [#14191][DEVELOPER]The RBAC for fluent-operator is allowing watching pods and namespaces resources, required bygardener-otelcol-extensionscenario. by @nickytd [#14265][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.83.7to1.83.8. Release Notes by @gardener-ci-robot [#14225][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.83.6to1.83.7. Release Notes by @gardener-ci-robot [#14201][DEPENDENCY]A new helper function is introduced to check for dual-stack IP family -github.com/gardener/gardener/pkg/apis/{core,core/v1beta1}.IsDualStack. by @hebelsan [#13659][DEPENDENCY]The following dependencies have been updated:quay.io/brancz/kube-rbac-proxyfromv0.20.2tov0.21.0. by @gardener-ci-robot [#14168][DEPENDENCY]The following dependencies have been updated:perses/persesfromv0.52.0tov0.53.0. Release Notes by @gardener-ci-robot [#14164]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.138.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.138.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.138.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.138.0Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.138.0europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.138.0v1.137.5Compare Source
[github.com/gardener/gardener:v1.137.5]
🐛 Bug Fixes
[OPERATOR]The per-worker-poolnode-local-dnsDaemonsets now also include the name of the worker in their label selector and in their Pods' labels. This resolves an issue where each of the correspondingVPAs targeted allnode-cachecontainers from all of theseDaemonsetsresulting in incorrect resource recommendations. by @plkokanov [#14295][DEPENDENCY]Fixing an issue where CA scale-downs were getting stuck when MCD replicas was updated with stale cache value of worker-controller by @r4mek [#14293]🏃 Others
[OPERATOR]The following dependency has been updated:golang.org/x/netfromv0.50.0tov0.51.0. by @ScheererJ [#14242]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.5Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.5europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.5v1.137.4Compare Source
[github.com/gardener/gardener:v1.137.4]
🏃 Others
[OPERATOR]Add startup probe to gardener-metrics-exporter by @chrkl [#14227][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.83.7to1.83.8. Release Notes by @gardener-ci-robot [#14230]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.4Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.4europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.4v1.137.3Compare Source
[github.com/gardener/gardener:v1.137.3]
🐛 Bug Fixes
[OPERATOR]An issues has been fixed causinggardener-resource-managercrash loops in large clusters. by @timuthy [#14214][OPERATOR]Add a network policy label for allowing communication from the OpenTelemetryCollector in the control plane to the Shoot Kubernetes API Server. by @rrhubenov [#14221]🏃 Others
[OPERATOR]Fluent-bit resource limits are increased. by @nickytd [#14211]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.3europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.3europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.3europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.3Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.3europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.3v1.137.2Compare Source
Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.2europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.2europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.2europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.2Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.2europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.2v1.137.1Compare Source
[github.com/gardener/gardener:v1.137.1]
🏃 Others
[OPERATOR]A regression in Gardener Node Agent that can occur on Debian based OS images and that prevents it to successfully reconcile nodes that run a containerd version that contains - according to semver - invalid characters in its version number was fixed. by @MrBatschner [#14188]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.1europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.1europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.1europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.1Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.1europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.1v1.137.0Compare Source
[github.com/gardener/gardener:v1.137.0]
[OPERATOR]Thegarden_garden_last_operationmetric structure has changed: thelast_operationlabel has been renamed totype, and a newstatelabel has been added to expose the operation state. Existing queries and dashboards using thelast_operationlabel must be updated to usetypeinstead. Additionally, two new alerts have been introduced:GardenLastOperationInErrorStateandGardenLastOperationStuckProcessing. by @rickardsjp [#13827][DEVELOPER]Thepkg/utils/secrets/manager.Newfunction's signature has been reworked to accept config functions. Namespaces are now passed viaWithNamespaces(...string), automatic CA secret rotation can be disabled viaWithoutCASecretAutoRotation(), and the map of secret names to "last rotation initiation times" is passed viaWithSecretNamesToTimes(map[string]time.Time). Accordingly,pkg/utils/secrets/manager.Confighas been removed. by @rfranzke [#14000][DEVELOPER]All Gardener Enhancement Proposals (GEPs) have been moved out ofgardener/gardenerto the newgardener/enhancementsrepository. Read the Slack thread to learn more about it. by @rfranzke [#14043][DEVELOPER]When usingModeServicein the extension webhook library, the specified service port is now properly propagated when constructing theadmissionregistrationv1.WebhookClientConfigfor{Validating,Mutating}WebhookConfigurations (previously, it was not specified at all and defaulted to443by Kubernetes). Make sure to specify--webhook-config-service-portto prevent falling back to the--webhook-config-server-port(if configured). by @rfranzke [#14063][DEVELOPER]The packagegithub.com/gardener/gardener/pkg/apishas been made a Go submodule. Validations and helpers from./pkg/apishave been moved to./pkg/api. The packagepkg/utils/timewindowhas been moved topkg/apis/utils/timewindow. The component configs./pkg/{admissioncontroller,controllermanager,gardenlet,nodeagent,operator,resourcemanager,scheduler}have been moved to./pkg/apis/config/...and theirhelperandvalidationpackages to./pkg/api/config/.... Extension developers can use the commands provided in this Gist to update the import paths programmatically. by @LucaBernstein [#13536]✨ New Features
[OPERATOR]A default.machineControllerManager.machineCreationTimeoutcan be provided for a machine type in theCloudProfile. by @LucaBernstein [#14032][OPERATOR]Operators can configure workload identity token expiration duration via gardenlet's configuration by setting.controllers.tokenRequestorWorkloadIdentity.tokenExpirationDuration. by @dimityrmirchev [#13752][OPERATOR]Feature gateVictoriaLogsBackendhas been introduced to thegardenletandgardener-operator. When enabled, an instance ofVictoriaLogsis deployed in the respective cluster. by @rrhubenov [#13988][OPERATOR]The "Reversed VPN OpenVPN Server (HA)" dashboard now shows packet loss statistics. by @domdom82 [#14088][DEVELOPER]Secrets Manager: The automatic renewal ofSecrets about to expire can now be disabled with the config functionWithoutAutomaticSecretRenewal()passed toNew(). This is useful if you want to prevent your secrets manager instance from listing all existingSecrets in the cluster when instantiated. by @rfranzke [#14000][DEVELOPER]gardener-node-agent now supports node-specific configuration files, i.e. files which are only applied to a specified node. by @ScheererJ [#13412][DEVELOPER]The secrets manager now allows to load missing signing CA certificate secrets directly from the cluster in case they were not generated upfront. This is helpful when the secrets manager instance generating certificates is not the same managing the signing CA certificate lifecycle. by @rfranzke [#14000]🐛 Bug Fixes
[OPERATOR]Fixed the shoot-care controller panic for clusters where.status.credentials.rotationexists but.status.credentials.encryptionAtRestis nil. by @maboehm [#14147][OPERATOR]Fixed an issue with the maximum batch size that theOpenTelemetry Collectorinstances can send. by @rrhubenov [#14108][OPERATOR]Systemd logs are now collected from seed clusters as expected. by @nickytd [#14071][OPERATOR]Additional finetuning to theCollectorconfiguration has been applied for improved memory usage. by @rrhubenov [#14127][OPERATOR]A bug is fixed in the extension scrape configuration in the seed Prometheus, where the scrape address was not correctly configured on IPv4 setups. by @vicwicker [#14111][OPERATOR]An issue causing the control-plane migration to get stuck if the source backup entry deployment was retried is now fixed. by @shafeeqes [#14091][USER]An issue which lead to a nil pointer in gardenlet when a Shoot had an empty.spec.addonsstructure defined is now fixed. by @voelzmo [#14112][DEPENDENCY]extension library: Extension admission webhooks now returnhttp.StatusForbiddenwhen validation/mutation fails. With this, the failure reason is now properly displayed when updating the resource withkubectl edit. by @dnaeon [#14026]🏃 Others
[OPERATOR]When L7 load-balancing is active, connections to kube-apiservers have a timeout of 1 day now. by @oliver-goetz [#14061][OPERATOR]All VerticalPodAutoscaler resources managed by Gardener are enhanced to define an explicit container policy for all containers that need to be auto-scaled and to have acatch-allcontainer policy (containerName: '*'andmode: Off) always. by @voelzmo [#14009][OPERATOR]Resource limits are dropped from apiserver-proxy to increase shoot connectivity. by @domdom82 [#14110][OPERATOR]fluent-bit is now updated to v4.2.2, fluent-operator to v3.6.0, fluent-bit-plugin to v1.1.0. Small fine-tunings of the logging stack. by @nickytd [#14093][DEVELOPER]golang-testimages for Go 1.26 are built now. Those for Go 1.24 are not built anymore because it is out of maintenance. by @marc1404 [#14024][DEVELOPER]The following dependencies are updated:k8s.io/*:v0.34.3->v0.35.0sigs.k8s.io/controller-runtime:v0.22.5->v0.23.1sigs.k8s.io/controller-tools:v0.19.0->v0.20.0by @timuthy [#13982][DEVELOPER]New slice functions were added to thepkg/utilspackage that can be used to transform and filter elements. by @timuthy [#14042][DEVELOPER]The message for the recently introduced Prometheus health checks that is part of the status conditions ofGarden,SeedorShootresources is improved. It provides more detailed information about the failing Prometheus health checks to facilitate troubleshooting. by @vicwicker [#14006][DEVELOPER]etcd-druidis now configured withOperatorConfigurationinstead of the deprecated CLI flags. by @CaptainIRS [#13674][DEPENDENCY]make formattarget supports sequential run (again) by passingMODE=sequential. by @LucaBernstein [#14076][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv0.8.24tov0.8.25. by @gardener-ci-robot [#14017][DEPENDENCY]The following dependencies have been updated:gardener/dependency-watchdogfromv1.6.0tov1.7.0. Release Notes by @gardener-ci-robot [#14154][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv1.35.1tov1.35.2. by @gardener-ci-robot [#14019][DEPENDENCY]The following dependencies have been updated:gardener/etcd-druidfromv0.35.0tov0.35.1. Release Notesgithub.com/gardener/etcd-druid/apifromv0.35.0tov0.35.1. by @gardener-ci-robot [#14146][DEPENDENCY]The following dependencies have been updated:gardener/vpn2from0.46.2to0.47.0. Release Notes by @gardener-ci-robot [#14086][DEPENDENCY]The following dependencies have been updated:gardener/machine-controller-managerfromv0.61.1tov0.61.2. Release Notesgithub.com/gardener/machine-controller-managerfromv0.61.1tov0.61.2. by @gardener-ci-robot [#14092][DEPENDENCY]The following dependencies have been updated:credativ/plutonofromv7.5.45tov7.5.46. Release Notes by @gardener-ci-robot [#14116][DEPENDENCY]The following dependencies have been updated:quay.io/prometheus/alertmanagerfromv0.31.0tov0.31.1. by @gardener-ci-robot [#14038][DEPENDENCY]The following dependencies have been updated:credativ/valifromv2.2.30tov2.2.31. Release Notes by @gardener-ci-robot [#14115][DEPENDENCY]The following dependencies have been updated:gcr.io/istio-release/pilotfrom1.27.6to1.27.7.gcr.io/istio-release/proxyv2from1.27.6to1.27.7.istio.io/apifromv1.27.6tov1.27.7. by @gardener-ci-robot [#14080][DEPENDENCY]The following dependencies have been updated:registry.k8s.io/node-problem-detector/node-problem-detectorfromv1.34.2tov1.34.3. by @gardener-ci-robot [#14018][DEPENDENCY]The following dependencies have been updated:gardener/dashboardfrom1.83.5to1.83.6. Release Notes by @gardener-ci-robot [#14124][DEPENDENCY]The following dependencies have been updated:open-telemetry/opentelemetry-operatorfromv0.143.0tov0.145.0. Release Notes by @gardener-ci-robot [#14078][DEPENDENCY]The following dependencies have been updated:gardener/ingress-default-backendfrom0.24.0to0.25.0. Release Notes by @gardener-ci-robot [#14099][DEPENDENCY]The following dependencies have been updated:gardener/alpine-iptablesfrom3.22.1to3.23.3. Release Notes by @gardener-ci-robot [#14098]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.137.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.137.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.137.0europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.137.0Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.137.0europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.137.0v1.136.6Compare Source
[github.com/gardener/gardener:v1.136.6]
🐛 Bug Fixes
[OPERATOR]The per-worker-poolnode-local-dnsDaemonsets now also include the name of the worker in their label selector and in their Pods' labels. This resolves an issue where each of the correspondingVPAs targeted allnode-cachecontainers from all of theseDaemonsetsresulting in incorrect resource recommendations. by @plkokanov [#14296][DEPENDENCY]Fixing an issue where CA scale-downs were getting stuck when MCD replicas was updated with stale cache value of worker-controller by @r4mek [#14298]🏃 Others
[OPERATOR]The following dependency has been updated:golang.org/x/netfromv0.50.0tov0.51.0. by @ScheererJ [#14244]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.136.6europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.136.6europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.136.6europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.136.6Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.136.6europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.136.6v1.136.5Compare Source
[github.com/gardener/gardener:v1.136.5]
🐛 Bug Fixes
[OPERATOR]Add a network policy label for allowing communication from the OpenTelemetryCollector in the control plane to the Shoot Kubernetes API Server. by @rrhubenov [#14222]🏃 Others
[OPERATOR]Add startup probe to gardener-metrics-exporter by @chrkl [#14226][OPERATOR]Fluent-bit resource limits are increased. by @nickytd [#14210]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.136.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.136.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.136.5europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.136.5Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.136.5europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.136.5v1.136.4Compare Source
[github.com/gardener/gardener:v1.136.4]
🐛 Bug Fixes
[OPERATOR]Additional finetuning to theCollectorconfiguration has been applied for improved memory usage. by @rrhubenov [#14152][USER]Maximum worker pool nodes can now exceed the configured limits. by @LucaBernstein [#14153]🏃 Others
[OPERATOR]A regression in Gardener Node Agent that can occur on Debian based OS images and that prevents it to successfully reconcile nodes that run a containerd version that contains - according to semver - invalid characters in its version number was fixed. by @MrBatschner [#14187]Helm Charts
europe-docker.pkg.dev/gardener-project/releases/charts/gardener/controlplane:v1.136.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/gardenlet:v1.136.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/operator:v1.136.4europe-docker.pkg.dev/gardener-project/releases/charts/gardener/resource-manager:v1.136.4Container (OCI) Images
europe-docker.pkg.dev/gardener-project/releases/gardener/admission-controller:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/apiserver:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/controller-manager:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/gardenadm:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/gardenlet:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/node-agent:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/operator:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/resource-manager:v1.136.4europe-docker.pkg.dev/gardener-project/releases/gardener/scheduler:v1.136.4Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.