Changes and Releases

Updates on Giant Swarm workload cluster releases, apps, UI improvements and documentation changes.

  • Changed

    • Update Backstage to 1.28.4.
  • This release updates the components, keeping them up to date with Vintage AWS v20.1.x series. Several improvements for Vintage to CAPA migration have also been included.

    Change details compared to CAPA 25.0.0

    cluster-aws 1.1.0

    Fixed

    • Fixed China IRSA suffix

    Added

    • Add the Management Cluster name as a tag to the AWS resources created by CAPA.
    • Add the node pool name as a tag to the AWS resources associated with the node pool.

    Changed

    • Update cluster chart to 0.35.0

    cert-manager 3.7.9

    Fix

    • Remove quotes from acme-http01-solver-image argument. The quotes are used when looking up the image which causes an error.

    Update

    • Improves container security by setting runAsGroup and runAsUser greater than zero for all deployments.

    containerlinux 3815.2.5

    Changes since Stable 3815.2.4

    Security fixes:

    Updates:

    cilium 0.25.1

    Changed

    • Fix regression setting Policy BPF Max map policyMapMax back to 65536 from 16384.
    • Upgrade cilium to v1.15.6.
  • Changed

    • Get rid of the app label in Phoenix dashboards.
  • Added

    • Improves container security by setting runAsGroup and runAsUser greater than zero for all deployments.
  • Added

    • Improves container security by setting runAsGroup and runAsUser greater than zero for all deployments.
  • Changed

    • Upgrade kube-prometheus-stack to 11.0.0 and prometheus-operator-crd to 11.0.0. This upgrade mainly consists in:
      • kube-prometheus-stack dependency chart upgraded from 56.21.2 to 61.0.0
      • prometheus upgrade from 2.50.1 to 2.53.0
      • thanos ruler upgrade from 0.34.1 to 0.35.1
      • kube-state-metrics from 2.10.0 to 2.12.0
      • prometheus-operator from 0.71.2 0.75.0 - adding remoteWrite.proxyFromEnvironment and Scrape Class support
      • prometheus-node-exporter upgraded from 1.8.0 to 1.8.1
    • Upgrade grafana-agent from 0.4.3 to 0.4.4
      • This version enables the override the grafana agent CiliumNetworkPolicy egress and ingress sections.
  • Added

    • Add plugin-scaffolder-backend-module-gs backend module with custom parseClusterRef filter for scaffolder plugin.
    • GS Auth: add custom sign-in resolver for GitHub auth provider.

    Removed

    • Clean up catalog templates.
  • Added

    • Add “BPF map pressure” graph to “Cilium performance” dashboard.
    • Add kube-builder logs in “Kube-Builder Operators” dashboard.

    Changed

    • fluentbit dashboard: cluster selection

    Fixed

    • Mimir Cost Estimation: fix RAM usage

    Removed

    • Removed the dashboard ‘Webhook Health’.
  • Changed

    • Upgraded chart dependency to kube-prometheus-stack-61.0.0
      • prometheus-operator from 0.73.2 to 0.75.0 - adding remoteWrite.proxyFromEnvironment support
      • prometheus upgraded from 2.52.0 to 2.53.0
      • grafana from 7.3.12 to 8.2.0
      • thanos ruler upgraded from 0.35.0 to 0.35.1
      • prometheus-node-exporter upgraded from 1.8.0 to 1.8.1
    • Replace in-addr.arpa records in zone label for coredns_cache_.* metrics due to large cardinality.
  • Changed

    • Upgraded chart dependency to kube-prometheus-stack-61.0.0
      • prometheus-operator from 0.73.2 to 0.75.0 - adding remoteWrite.proxyFromEnvironment support
      • prometheus upgraded from 2.52.0 to 2.53.0
      • grafana from 7.3.12 to 8.2.0
      • thanos ruler upgraded from 0.35.0 to 0.35.1
      • prometheus-node-exporter upgraded from 1.8.0 to 1.8.1
    • Replace in-addr.arpa records in zone label for coredns_cache_.* metrics due to large cardinality.