This patch release fixes an issue with the installation of the Teleport Kube Agent app.
Changes compared to v33.1.0
Apps
- coredns from v1.28.2 to v1.28.3
coredns v1.28.2…v1.28.3
Changed
- Update
corednsimage to 1.13.2.
This patch release fixes an issue with the installation of the Teleport Kube Agent app.
coredns image to 1.13.2.Update Kubernetes to v1.33.6, Flatcar to v4459.2.1 and various component upgrades.
cluster to v4.4.0.cluster to v4.3.0.kubescape (app) version v0.0.4.kyverno (app) to v0.21.1.kyverno-crds (app) to v1.15.0.kyverno (app) to v0.20.1.kyverno-crds (app) to v1.14.0.kyverno-policies (app) to v0.24.0.reports-server (app) to v0.0.3.ephemeral-storage requests and limits to satisfy Kyverno policy require-emptydir-requests-and-limits.This release updates Flatcar to v4230.2.4 and includes several app updates and improvements.
cainjector-servicecoredns image to 1.13.1.coredns image to 1.13.0.kyverno (app) to v0.20.1.kyverno-crds (app) to v1.14.0.kyverno-policies (app) to v0.24.0.reports-server (app) to v0.0.3.kyverno update (#536, #531, #538).kyverno-policy-operator (app) to v0.1.6.kyverno (app) to v0.20.0.kyverno-crds (app) to v1.14.0.kyverno-policies (app) to v0.24.0.kyverno-policy-operator (app) to v0.1.5.trivy-operator (app) to v0.12.1.trivy (app) to v0.14.1.falco (app) to v0.11.0.kyverno update (#536, #531, #538).kyverno-policy-operator (app) to v0.1.6.kyverno (app) to v0.20.0.kyverno-crds (app) to v1.14.0.kyverno-policies (app) to v0.24.0.kyverno-policy-operator (app) to v0.1.5.trivy-operator (app) to v0.12.1.trivy (app) to v0.14.1.falco (app) to v0.11.0.WARNING: This release enables the
OwnerReferencesPermissionEnforcementadmission controller by default. This means that only users with delete permission to an object can change itsmetadata.ownerReferences, and only users with update permission to the finalizers subresource of the referenced owner can changemetadata.ownerReferences[x].blockOwnerDeletion. If you have workloads that need to modify these fields, please ensure that the necessary RBAC permissions are in place before upgrading to this release.
Example:
- apiGroups: ["<group>"]
resources: ["<resource>", "<resource>/finalizers"]
verbs: ["delete", "..."] # Add any additional verbs your use case requires
cluster to v4.2.0.cluster to v4.1.0.cluster to v4.0.3.cluster to v4.0.2.cluster to v4.0.1.cainjector-servicecoredns image to 1.13.1.coredns image to 1.13.0.WARNING: With Flatcar 4230.2.0, cgroups v1 backwards compatibility has been removed. This means that enabling legacy cgroups v1 is no longer supported and nodes still using them will fail to update.
cluster to v3.0.1..internal.advancedConfiguration.cgroupsv1 and .global.nodePools.().cgroupsv1 flags have been removed.cluster to v2.6.2.kube-vip static pod manifest to v1.0.0.cluster to v2.6.1.alloy ingress rules for cainjector metrics ingestion.coredns image to 1.12.3.kube-prometheus-stack-app to 18.1.0cluster-api-monitoring-app so that cluster_id label points to the workload cluster name as expected in some alert definitionskube-prometheus-stack to 77.0.1kube-prometheus-stack to 76.4.0This release updates the cluster-vsphere chart and the underlying cluster chart to address an issue around Helm values schema validation uncovered by newer Helm versions.
cluster to v2.5.1.This release updates the cluster-vsphere chart and the underlying cluster chart to address an issue around Helm values schema validation uncovered by newer Helm versions.
cluster to v2.2.2.cluster to v2.5.0.kube-vip to v0.9.2.coredns image to 1.12.2.trivy-operator (app) to v0.11.1.trivy (app) to v0.14.0.falco (app) to v0.10.1.cloudnative-pg (app) to v0.0.10.starboard-exporter (app) to v0.8.2.cluster to v2.4.0.cluster to v2.3.0.kube-vip to 0.9.1.kube-vip to 0.9.0.controller pods.controller-uid, since this is excluded by default now.prometheus.metrics.coredns image to 1.12.1.alloy-app from 0.10.0 to 0.11.0Alloy from 1.8.3 to 1.9.0alloy-app from 0.9.0 to 0.10.0Alloy from 1.7.1 to 1.8.3kube-prometheus-stack to 72.3.0kube-prometheus-stack to 72.3.0kube-prometheus-stack from 69.5.1 to 70.1.1promtailgrafana-agentpromtheus-agent.Values.disabled to .Values.enabled to follow best practices.policy-api-crds app to manage Policy API CRDs.trivy (app) to v0.13.4.cloudnative-pg (app) to v0.0.7.starboard-exporter (app) to v0.8.1.kyverno-policy-operator (app) to v0.0.11.cloudnative-pg (app) to v0.0.9.Note: Kyverno PolicyExceptions (API group kyverno.io) versions v2alpha1 and v2beta1 are deprecated and will be removed in the next Kyverno minor release (v1.14). Please update all Kyverno PolicyExceptions to v2. No action is required for Giant Swarm Policy API PolicyExceptions (API group policy.giantswarm.io), which are handled automatically.