OCPBUGS-89242: Update RHCOS-release-4.20 bootimage metadata to 9.6.20260616-0#10641
OCPBUGS-89242: Update RHCOS-release-4.20 bootimage metadata to 9.6.20260616-0#10641coreosbot-releng wants to merge 417 commits into
Conversation
go mod vendor
Upgrading from capi v1beta1 -> v1beta2 will take a not insignificant amount of work. I have captured that work in https://issues.redhat.com/browse/CORS-3563 and set nolint to disable the linters from failing on this package.
Let users know what to do when they get an overlapping subnet error. https://issues.redhat.com/browse/OCPBUGS-61167
OCPBUGS-61167: pkg/types/valication: explain overlapping internal subnets better
CORS-4082, CORS-4086: Azure UserProvisionedDNS: Update bootstrap, master and worker ignition files
CORS-4262: update openshift/api & capi v1.11
When using a pre-existing network, save CIDR blocks for the virtual network and subnets https://issues.redhat.com/browse/OCPBUGS-59105
Service endpoints are no longer needed in favor of the PSCEndpoint.
A new policy was added to the ImageDigestSource configuration that allows the user to specify policy when there is a failure pulling an image from the source. Update the image registry configuration on the bootstrap host with this SourcePolicy.
Update the image registry configuration with the newly added Image source policy field that specifies the fallback policy when image pull fails.
With the introduction of the fallback source policy when Image source and mirrors are specified, image registry configuration for ABI should be update to include that.
…13-0
The changes done here will update the RHCOS 4.21 bootimage metadata and
address the following issues:
OCPBUGS-61669: [4.21] [OCP 4.18] coreos-boot-disk link not working with
multipath on early boot
This change was generated using:
plume cosa2stream \
--target data/data/coreos/rhcos.json \
--distro rhcos \
--no-signatures \
--name rhel-9.6 \
--url https://rhcos.mirror.openshift.com/art/storage/prod/streams \
x86_64=9.6.20251113-0 \
aarch64=9.6.20251113-0 \
s390x=9.6.20251113-0 \
ppc64le=9.6.20251113-0
Signed-off-by: Tiago Bueno <tiago.bueno@gmail.com>
OCPBUGS-65585: Update the RHCOS 4.21 bootimage metadata to 9.6.20251113-0
Signed-off-by: Dmitry Tantsur <dtantsur@protonmail.com>
Signed-off-by: Dmitry Tantsur <dtantsur@protonmail.com>
Signed-off-by: Dmitry Tantsur <dtantsur@protonmail.com>
TRT-2424: Revert "Update the RHCOS 4.21 bootimage metadata to 9.6.20251113-0"
NO-ISSUE: Generate the agent systemd diagrams from the unit files
CORS-4282: Remove the installer gcp service endpoints.
…59105 OCPBUGS-59105: pkg/asset/manifests/azure: save cidr blocks
Register the InfraEnv (using late binding) when the interactive GUI is enabled.
Pulling in the internalDNSRecords field from openshift/api#2460
** Firewall rules seem to be an issue on destroy with load balancers. The load balancers may have resource names created with a name such as a9123-xxxxx-xxxx. These resources are only discovered once, and it is possible when a failure occurs that the destroy process will skip finding these resources later. Now the firewall rules will be found using the name OR target tags. When the name does not appear to be part of the cluster (including the cluster id), then the target tags should be searched to determine if they are part of the cluster. This should handle the load balancer resources too.
- When using a managed identity, don't use shared key credentials - SAS urls are not supported in this case, so just return the blob URL https://issues.redhat.com/browse/OCPBUGS-37587
Removing the option to add shared key credentials to make way for better cred authentications.
Creating SAS url for ignition blobs using user delegated credentials.
Since this needs to be backported to earlier versions, adding a field to disallow shared access key if necessary. Made the field negative type field to have the default be enabled for shared key access for earlier versions.
…nt-pull-secret-to-ui-container OCPBUGS-82439: [release-4.21] Mount pullsecret manifest to UI container
The newer API versions of the vpc contains some breaking changes for SecurityGroupRuleProtocol. Some older SDKs was patched to handle additional protocol values introduced in newer API versions, ensuring older SDK releases do not fail when reading security group or network ACL rules created with expanded protocol support. The latest release of v0.10 of the cluster-api-provider-ibmcloud uses one of the patched SDKs. This update allows the installer to continue functioning with the changes.
SDK Compatibility Patch - Protocol Handling The SDK was patched to handle additional protocol values introduced in newer API versions, ensuring older SDK releases do not fail when reading security group or network ACL rules created with expanded protocol support.
[release-4.21] OCPBUGS-84225: ibmcloud: bump vpc-go-sdk and capibm
OCPBUGS-82068: Azure: Sign blob container using user delegated creds
OCPBUGS-77787 - [4.21] bootimage needs a coreos update to support GNR-D hardware
OCPBUGS-77048 - [4.21] RHCOS SNO does not boot after install; wrong device uuid in GRUB
OCPBUGS-69682 - [4.21] Kernel panic when using vrf and srv6 instrumented with FRR in RHCOS
```
plume cosa2stream --target data/data/coreos/rhcos.json \
--distro rhcos --no-signatures --name rhel-9.6 \
--url https://rhcos.mirror.openshift.com/art/storage/prod/streams \
x86_64=9.6.20260520-0 \
aarch64=9.6.20260520-0 \
s390x=9.6.20260520-0 \
ppc64le=9.6.20260520-0
```
…mp-9.6.20260520-0 OCPBUGS-77049: Update RHCOS-release-4.21 bootimage metadata to 9.6.20260520-0
OCPBUGS-81986: Bump go-jose/v4 to 4.1.4
|
@coreosbot-releng: This pull request references Jira Issue OCPBUGS-89242, which is invalid:
Comment The bug has been updated to refer to the pull request using the external bug tracker. DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the openshift-eng/jira-lifecycle-plugin repository. |
|
Important Review skippedAuto reviews are disabled on base/target branches other than the default branch. Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: Repository: openshift/coderabbit/.coderabbit.yaml Review profile: CHILL Plan: Enterprise Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
|
Hi @coreosbot-releng. Thanks for your PR. I'm waiting for a openshift member to verify that this patch is reasonable to test. If it is, they should reply with Tip We noticed you've done this a few times! Consider joining the org to skip this step and gain Once the patch is verified, the new status will be reflected by the I understand the commands that are listed here. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
Bootimage-bump done to keep rhel-9.6 in sync with 4.20 bootimage bump - https://redhat.atlassian.net/browse/OCPBUGS-89242 ``` plume cosa2stream --target data/data/coreos/rhcos.json \ --distro rhcos --no-signatures --name rhel-9.6 \ --url https://rhcos.mirror.openshift.com/art/storage/prod/streams \ x86_64=9.6.20260616-0 \ aarch64=9.6.20260616-0 \ s390x=9.6.20260616-0 \ ppc64le=9.6.20260616-0 ```
1d3f441 to
f96182b
Compare
|
PR needs rebase. DetailsInstructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: The full list of commands accepted by this bot can be found here. DetailsNeeds approval from an approver in each of these files:Approvers can indicate their approval by writing |
Update data/data/coreos/rhcos.json to 9.6.20260616-0
Bootimage bump of 4.20 done for container-selinux-2.237.0-5.el9_6 https://redhat.atlassian.net/browse/OCPBUGS-88740