- Set Home URL in chart metadata.
Security
Added
- Added Vertical Pod Autoscaler support for
controller
pods. - Added renovate configutarion
Removed
- Removed dependabot configuration
- Added Vertical Pod Autoscaler support for
Changed
- Address new code linter findings for golangci-lint v2.
- Update Go version and various dependencies.
Added
- Push to CAPI app collections.
Changed
- grafana dashboard: load it to
Shared Org
(public) organization
Added
- Add headless service on
diag
port 3000.
Changed
- Migrated to ABS
- Add headless service on
Changed
- Add API capabilities check for Kyverno PolicyExceptions before switching to v2.
Changed
- Make
livenessProbe.initialDelaySeconds
configurable.
- Make
Added
- Added support for
read-all-customer-groups
bindings.
Changed
- Change ownership to Team Shield
- Added support for
Added
- Add supplemental security and best practices policies:
check-resources-request-and-limits-ratio
check-serviceaccount-secrets
disallow-gitrepo-volume
disallow-latest-tag
prevent-bare-pods
require-container-requests-and-limits
require-emptydir-requests-and-limits
require-pod-probes
restrict-binding-clusteradmin
restrict-binding-system-groups
restrict-sa-automount-sa-token
- Add supplemental security and best practices policies:
Changed
- Narrow down CiliumNetworkPolicy egress rule to match DNS service only.
- Narrow down CiliumNetworkPolicy ingress rule to allow traffic from namespace.