Changes and Releases

Updates on Giant Swarm workload cluster releases, apps, UI improvements and documentation changes.

  • Added

    • Add Vertical Pod Autoscaler resource. It is disabled by default.

    Changes

  • Added

    • Add kubectl gs get nodepools for CAPA,CAPZ,CAPV,EKS and CAPVCD.
    • Add validation of ID token retrieved from OIDC provider during kubectl gs login

    Changed

    • Errors during update checks no longer interrupt the command execution.
    • Fix authentication failure in case the browser sends multiple requests to the callback server during the login command execution
  • Since upstream did not release a chroot variant of the controller image for v1.10.0, one can not enable controller.image.chroot in the chart values. If you although try to do so, your pods will not come up due to a missing image. We are sorry for that inconvenience and hopefully bring back support for that in a future version!

    Added

    • Chart: Add IngressClass aliases. (#609)

    Changed

    • Image: Update to v1.10.0. (#609)
      NOTE: Upstream does not provide a chroot image for this version, yet.
    • Chart: Always deploy PrometheusRule when asked to. (#609)
    • Chart: Deploy PodDisruptionBudget with KEDA. (#609)
    • Chart: Improve IngressClass documentation. (#609)
    • Chart: Align HPA & KEDA conditions. (#609)
    • Chart: Render controller.ingressClassResource.parameters natively. (#609)
  • Added

    • Add global.podSecurityStandards.enforced value for PSS migration.
  • Fixed

    • Fix the requests duration metrics exposed by the controller, as the duration was always 0.

    Added

    • Add global.podSecurityStandards.enforced value for PSS migration.

    Changed

    • Configure gsoci.azurecr.io as the default container image registry.
  • Added

    • Add public Cilium performance dashboard.

    Fixed

    • Fix all dashboards that were only supporting only role=master to now support role=~control-plane|master.
    • Fix Mimir - Prometheus cost dashboard to compare over real data (not missing on data from old prometheus instances)
  • Changed

    • Update Backstage to 1.24.2.
    • Migrate backend to the new backend system.
    • Move GS auth providers configuration to a separate backend module.
  • Changed

    • Add possibility to disable the execve audit logs as they are quite noisy.
  • Changed

    • Add possibility to disable the execve audit logs as they are quite noisy.
  • Changed

    • Removed chart tests
    • Use standalone tbot-distroless image v15.1.7

This part of our documentation refers to our vintage product. The content may be not valid anymore for our current product. Please check our new documentation hub for the latest state of our docs.