Changed
- prometheus remote-writes: filter on URL
Updates on Giant Swarm workload cluster releases, apps, UI improvements and documentation changes.
controller.enableAnnotationValidations
. (#536)controller.opentelemetry.resources
. (#536)global.podSecurityStandards.enforced
. (#544)v1.9.0
. (#536)controller.topologySpreadConstraints
an array. (#536)controller.topologySpreadConstraints
to an array, too.securityContext
s and Pod Security Policies. (#540)kube-webhook-certgen
image to v20231011-8b53cabe0
. (#542)v1.9.3
. (#547)controller.kind: Both
. (#547)controller.enableAnnotationValidations
. (#536)controller.opentelemetry.resources
. (#536)global.podSecurityStandards.enforced
. (#544)v1.9.0
. (#536)controller.topologySpreadConstraints
an array. (#536)controller.topologySpreadConstraints
to an array, too.securityContext
s and Pod Security Policies. (#540)kube-webhook-certgen
image to v20231011-8b53cabe0
. (#542)v1.9.3
. (#547)controller.kind: Both
. (#547)hostedZoneID
for route53
DNS01 challenge.accessKeyID
and secretAccessKey
optional for route53
DNS01 challenge.hostedZoneID
for route53
DNS01 challenge.accessKeyID
and secretAccessKey
optional for route53
DNS01 challenge.security-bundle versions 1.1.0 and 0.18.0 With these two releases we include two new tools supporting migration away from Pod Security Policies, exception-recommender
and kyverno-policy-operator
. With exception-recommender
analyzes the current policy reports in a cluster get analyzed and based on the results a Giant Swarm PolicyExceptionDrafts
gets generated. Once the drafts have been reviewed and accepted, kyverno-policy-operator
takes the resulting Giant Swarm PolicyExceptions
and generates the necessary Kyverno resources to allow workloads to continue running.
We have started the migration away from Pod Security Policies! Therefore we have added a cluster administrator migration guide containing all information about the new Policy API and all the assistive tooling available to help you securely migrate workloads off of PSPs. Reach out for any questions regarding the Pod Security Policies to Pod Security Standards migration
This part of our documentation refers to our vintage product. The content may be not valid anymore for our current product. Please check our new documentation hub for the latest state of our docs.