Security
Changed
- Disable namespace creation by default since it was moved to Kyverno.
- Check if namespace exists before creation.
Changed
- Fix label selector
kyverno-policy-reporter to talk to kyverno-ui rule. - Add
policy-exceptions namespace if it doesn’t exist.
Added
- Added support for
azureDNS dns01 challenge solver on cluster-issuer chart
Changed
- Disables
dex-k8s-authenticator to be installed by default by setting deployDexK8SAuthenticator to false.
Added
- Added
acme-solvers-networkpolicy NetworkPolicy namespace to kube-system
Fixed
- Move pss values under the global property
Changed
- Allow
kyverno-policy-reporter to talk to kyverno-ui.
Changed
- Enable CiliumNetworkPolicies by default.
- Enable API Priority and Fairness.
Changed
- Enable CiliumNetworkPolicies by default.
Added
- Add CiliumNetworkPolicy for falco-exporter.
Added
- Update CiliumNetworkPolicy and enable by default.
Changed
- github.com/emicklei/go-restful updated to v3.11.0
- gomodules.xyz/jsonpatch/v2 updated to v2.4.0
- go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc updated to v0.46.1
- Solve vulnerability error.
Changed
- Configure
gsoci.azurecr.io as the default container image registry.