Added
- cert-manager-giantswarm-clusterissuer: Allow setting
hostedZoneIDforroute53DNS01 challenge. - cert-manager-giantswarm-clusterissuer: Make
accessKeyIDandsecretAccessKeyoptional forroute53DNS01 challenge.
Updates on Giant Swarm workload cluster releases, apps, UI improvements and documentation changes.
hostedZoneID for route53 DNS01 challenge.accessKeyID and secretAccessKey optional for route53 DNS01 challenge.hostedZoneID for route53 DNS01 challenge.accessKeyID and secretAccessKey optional for route53 DNS01 challenge.security-bundle versions 1.1.0 and 0.18.0 With these two releases we include two new tools supporting migration away from Pod Security Policies, exception-recommender and kyverno-policy-operator. With exception-recommender analyzes the current policy reports in a cluster get analyzed and based on the results a Giant Swarm PolicyExceptionDrafts gets generated. Once the drafts have been reviewed and accepted, kyverno-policy-operator takes the resulting Giant Swarm PolicyExceptions and generates the necessary Kyverno resources to allow workloads to continue running.
We have started the migration away from Pod Security Policies! Therefore we have added a cluster administrator migration guide containing all information about the new Policy API and all the assistive tooling available to help you securely migrate workloads off of PSPs. Reach out for any questions regarding the Pod Security Policies to Pod Security Standards migration
prometheus-operator-app to 6.2.1.prometheus-agent to 0.6.5.