From 7b4c654b7bc96515a701cd5601175c372b401f3c Mon Sep 17 00:00:00 2001 From: ci-robot Date: Tue, 30 Jun 2026 04:51:22 +0000 Subject: [PATCH 1/4] update last_rebase.sh --- scripts/auto-rebase/last_rebase.sh | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scripts/auto-rebase/last_rebase.sh b/scripts/auto-rebase/last_rebase.sh index b846f4f769..5a071722c7 100755 --- a/scripts/auto-rebase/last_rebase.sh +++ b/scripts/auto-rebase/last_rebase.sh @@ -1,2 +1,2 @@ #!/bin/bash -x -./scripts/auto-rebase/rebase.sh to "registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812" "registry.ci.openshift.org/ocp-arm64/release-arm64:4.22.0-0.nightly-arm64-2026-06-28-145819" +./scripts/auto-rebase/rebase.sh to "registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812" "registry.ci.openshift.org/ocp-arm64/release-arm64:4.22.0-0.nightly-arm64-2026-06-29-132233" From 25510bfcf5d8bc2e313d828f96d714732d31c872 Mon Sep 17 00:00:00 2001 From: ci-robot Date: Tue, 30 Jun 2026 04:53:15 +0000 Subject: [PATCH 2/4] update manifests --- assets/components/multus/release-multus-aarch64.json | 2 +- .../operator-lifecycle-manager/release-olm-aarch64.json | 2 +- assets/release/release-aarch64.json | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/assets/components/multus/release-multus-aarch64.json b/assets/components/multus/release-multus-aarch64.json index 07217e27c7..441b8cafd2 100644 --- a/assets/components/multus/release-multus-aarch64.json +++ b/assets/components/multus/release-multus-aarch64.json @@ -1,6 +1,6 @@ { "release": { - "base": "4.22.0-0.nightly-arm64-2026-06-28-145819" + "base": "4.22.0-0.nightly-arm64-2026-06-29-132233" }, "images": { "multus-cni-microshift": "quay.io/openshift-release-dev/ocp-v4.0-art-dev@sha256:be9afa9c3c06a557e3b4e202db63e221a28c3fa37a7926e2352f5ea1647c59bd", diff --git a/assets/optional/operator-lifecycle-manager/release-olm-aarch64.json b/assets/optional/operator-lifecycle-manager/release-olm-aarch64.json index 7de8ef3b4f..c4a973829a 100644 --- a/assets/optional/operator-lifecycle-manager/release-olm-aarch64.json +++ b/assets/optional/operator-lifecycle-manager/release-olm-aarch64.json @@ -1,6 +1,6 @@ { "release": { - "base": "4.22.0-0.nightly-arm64-2026-06-28-145819" + "base": "4.22.0-0.nightly-arm64-2026-06-29-132233" }, "images": { "operator-lifecycle-manager": "quay.io/openshift-release-dev/ocp-v4.0-art-dev@sha256:4e7cb3bbf6c4e166b9dee565102eba6abf64e3a8e57c09b3b20d6d7949b51f22", diff --git a/assets/release/release-aarch64.json b/assets/release/release-aarch64.json index ea5ae74fd7..690d981543 100644 --- a/assets/release/release-aarch64.json +++ b/assets/release/release-aarch64.json @@ -1,6 +1,6 @@ { "release": { - "base": "4.22.0-0.nightly-arm64-2026-06-28-145819" + "base": "4.22.0-0.nightly-arm64-2026-06-29-132233" }, "images": { "cli": "quay.io/openshift-release-dev/ocp-v4.0-art-dev@sha256:667ca03ec4d600f4e1a55c5adda81d37f8b8d7bd9182fdb582474b97cdc8d510", From 1e08b45c162190a74e600fb5708eeb2e7b32fdaa Mon Sep 17 00:00:00 2001 From: ci-robot Date: Tue, 30 Jun 2026 04:53:16 +0000 Subject: [PATCH 3/4] update buildfiles --- Makefile.version.aarch64.var | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Makefile.version.aarch64.var b/Makefile.version.aarch64.var index 6c640407e7..e1f5481dd4 100644 --- a/Makefile.version.aarch64.var +++ b/Makefile.version.aarch64.var @@ -1 +1 @@ -OCP_VERSION := 4.22.0-0.nightly-arm64-2026-06-28-145819 +OCP_VERSION := 4.22.0-0.nightly-arm64-2026-06-29-132233 From 91bf5540e280e9ba47e72bdb4a1a72b06036d4b3 Mon Sep 17 00:00:00 2001 From: ci-robot Date: Tue, 30 Jun 2026 04:54:43 +0000 Subject: [PATCH 4/4] rebase.sh failure artifacts --- ...rtificaterequests.cert-manager.io-crd.yaml | 22 +- .../certificates.cert-manager.io-crd.yaml | 39 +- .../challenges.acme.cert-manager.io-crd.yaml | 129 ++- .../clusterissuers.cert-manager.io-crd.yaml | 129 ++- .../bases/issuers.cert-manager.io-crd.yaml | 128 ++- .../operator.openshift.io_certmanagers.yaml | 135 ++- .../operator.openshift.io_istiocsrs.yaml | 20 +- .../orders.acme.cert-manager.io-crd.yaml | 16 +- .../cert-manager/crd/kustomization.yaml | 2 + .../cert-manager/manager/images-aarch64.yaml | 12 +- .../cert-manager/manager/images-x86_64.yaml | 12 +- .../cert-manager/manager/manager.yaml | 20 +- .../cert-manager/rbac/kustomization.yaml | 4 + assets/optional/cert-manager/rbac/role.yaml | 23 + .../release-cert-manager-aarch64.json | 14 +- .../release-cert-manager-x86_64.json | 14 +- rebase.log | 936 ++++++++---------- 17 files changed, 1008 insertions(+), 647 deletions(-) diff --git a/assets/optional/cert-manager/crd/bases/certificaterequests.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/certificaterequests.cert-manager.io-crd.yaml index f1c41bc81f..d7775d20a2 100644 --- a/assets/optional/cert-manager/crd/bases/certificaterequests.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/certificaterequests.cert-manager.io-crd.yaml @@ -6,9 +6,10 @@ metadata: helm.sh/resource-policy: keep labels: app: cert-manager + app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: certificaterequests.cert-manager.io spec: group: cert-manager.io @@ -25,13 +26,13 @@ spec: scope: Namespaced versions: - additionalPrinterColumns: - - jsonPath: .status.conditions[?(@.type=="Approved")].status + - jsonPath: .status.conditions[?(@.type == "Approved")].status name: Approved type: string - - jsonPath: .status.conditions[?(@.type=="Denied")].status + - jsonPath: .status.conditions[?(@.type == "Denied")].status name: Denied type: string - - jsonPath: .status.conditions[?(@.type=="Ready")].status + - jsonPath: .status.conditions[?(@.type == "Ready")].status name: Ready type: string - jsonPath: .spec.issuerRef.name @@ -40,7 +41,7 @@ spec: - jsonPath: .spec.username name: Requester type: string - - jsonPath: .status.conditions[?(@.type=="Ready")].message + - jsonPath: .status.conditions[?(@.type == "Ready")].message name: Status priority: 1 type: string @@ -128,13 +129,17 @@ spec: The `name` field of the reference must always be specified. properties: group: - description: Group of the resource being referred to. + description: |- + Group of the issuer being referred to. + Defaults to 'cert-manager.io'. type: string kind: - description: Kind of the resource being referred to. + description: |- + Kind of the issuer being referred to. + Defaults to 'Issuer'. type: string name: - description: Name of the resource being referred to. + description: Name of the issuer being referred to. type: string required: - name @@ -224,6 +229,7 @@ spec: - netscape sgc type: string type: array + x-kubernetes-list-type: atomic username: description: |- Username contains the name of the user that created the CertificateRequest. diff --git a/assets/optional/cert-manager/crd/bases/certificates.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/certificates.cert-manager.io-crd.yaml index 3d4d2536d1..80dea8429a 100644 --- a/assets/optional/cert-manager/crd/bases/certificates.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/certificates.cert-manager.io-crd.yaml @@ -6,9 +6,10 @@ metadata: helm.sh/resource-policy: keep labels: app: cert-manager + app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: certificates.cert-manager.io spec: group: cert-manager.io @@ -25,7 +26,7 @@ spec: scope: Namespaced versions: - additionalPrinterColumns: - - jsonPath: .status.conditions[?(@.type=="Ready")].status + - jsonPath: .status.conditions[?(@.type == "Ready")].status name: Ready type: string - jsonPath: .spec.secretName @@ -35,7 +36,7 @@ spec: name: Issuer priority: 1 type: string - - jsonPath: .status.conditions[?(@.type=="Ready")].message + - jsonPath: .status.conditions[?(@.type == "Ready")].message name: Status priority: 1 type: string @@ -96,6 +97,7 @@ spec: - type type: object type: array + x-kubernetes-list-type: atomic commonName: description: |- Requested common name X509 certificate subject attribute. @@ -111,6 +113,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic duration: description: |- Requested 'duration' (i.e. lifetime) of the Certificate. Note that the @@ -126,6 +129,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic encodeUsagesInRequest: description: |- Whether the KeyUsage and ExtKeyUsage extensions should be set in the encoded CSR. @@ -138,6 +142,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic isCA: description: |- Requested basic constraints isCA value. @@ -158,13 +163,17 @@ spec: The `name` field of the reference must always be specified. properties: group: - description: Group of the resource being referred to. + description: |- + Group of the issuer being referred to. + Defaults to 'cert-manager.io'. type: string kind: - description: Kind of the resource being referred to. + description: |- + Kind of the issuer being referred to. + Defaults to 'Issuer'. type: string name: - description: Name of the resource being referred to. + description: Name of the issuer being referred to. type: string required: - name @@ -324,11 +333,13 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic emailAddresses: description: EmailAddresses is a list of Email Addresses that are permitted or excluded. items: type: string type: array + x-kubernetes-list-type: atomic ipRanges: description: |- IPRanges is a list of IP Ranges that are permitted or excluded. @@ -336,11 +347,13 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic uriDomains: description: URIDomains is a list of URI domains that are permitted or excluded. items: type: string type: array + x-kubernetes-list-type: atomic type: object permitted: description: Permitted contains the constraints in which the names must be located. @@ -350,11 +363,13 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic emailAddresses: description: EmailAddresses is a list of Email Addresses that are permitted or excluded. items: type: string type: array + x-kubernetes-list-type: atomic ipRanges: description: |- IPRanges is a list of IP Ranges that are permitted or excluded. @@ -362,11 +377,13 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic uriDomains: description: URIDomains is a list of URI domains that are permitted or excluded. items: type: string type: array + x-kubernetes-list-type: atomic type: object type: object otherNames: @@ -390,6 +407,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic privateKey: description: |- Private key options. These include the key algorithm and size, the used @@ -555,31 +573,37 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic localities: description: Cities to be used on the Certificate. items: type: string type: array + x-kubernetes-list-type: atomic organizationalUnits: description: Organizational Units to be used on the Certificate. items: type: string type: array + x-kubernetes-list-type: atomic organizations: description: Organizations to be used on the Certificate. items: type: string type: array + x-kubernetes-list-type: atomic postalCodes: description: Postal codes to be used on the Certificate. items: type: string type: array + x-kubernetes-list-type: atomic provinces: description: State/Provinces to be used on the Certificate. items: type: string type: array + x-kubernetes-list-type: atomic serialNumber: description: Serial number to be used on the Certificate. type: string @@ -588,12 +612,14 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic type: object uris: description: Requested URI subject alternative names. items: type: string type: array + x-kubernetes-list-type: atomic usages: description: |- Requested key usages and extended key usages. @@ -659,6 +685,7 @@ spec: - netscape sgc type: string type: array + x-kubernetes-list-type: atomic required: - issuerRef - secretName diff --git a/assets/optional/cert-manager/crd/bases/challenges.acme.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/challenges.acme.cert-manager.io-crd.yaml index 11e7489ded..f2fe03d3e1 100644 --- a/assets/optional/cert-manager/crd/bases/challenges.acme.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/challenges.acme.cert-manager.io-crd.yaml @@ -6,9 +6,10 @@ metadata: helm.sh/resource-policy: keep labels: app: cert-manager + app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: challenges.acme.cert-manager.io spec: group: acme.cert-manager.io @@ -81,13 +82,17 @@ spec: Challenge will be marked as failed. properties: group: - description: Group of the resource being referred to. + description: |- + Group of the issuer being referred to. + Defaults to 'cert-manager.io'. type: string kind: - description: Kind of the resource being referred to. + description: |- + Kind of the issuer being referred to. + Defaults to 'Issuer'. type: string name: - description: Name of the resource being referred to. + description: Name of the issuer being referred to. type: string required: - name @@ -403,9 +408,15 @@ spec: description: |- The IP address or hostname of an authoritative DNS server supporting RFC2136 in the form host:port. If the host is an IPv6 address it must be - enclosed in square brackets (e.g [2001:db8::1]) ; port is optional. + enclosed in square brackets (e.g [2001:db8::1]); port is optional. This field is required. type: string + protocol: + description: Protocol to use for dynamic DNS update queries. Valid values are (case-sensitive) ``TCP`` and ``UDP``; ``UDP`` (default). + enum: + - TCP + - UDP + type: string tsigAlgorithm: description: |- The TSIG Algorithm configured in the DNS supporting RFC2136. Used only @@ -497,6 +508,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic name: description: Name of the ServiceAccount used to request a token. type: string @@ -773,6 +785,7 @@ spec: - name type: object type: array + x-kubernetes-list-type: atomic podTemplate: description: |- Optional pod template used to configure the ACME challenge solver pods @@ -1068,7 +1081,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1083,7 +1095,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1244,7 +1255,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1259,7 +1269,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1348,8 +1357,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -1413,7 +1422,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1428,7 +1436,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1589,7 +1596,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1604,7 +1610,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1702,6 +1707,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -1713,6 +1721,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -1828,6 +1870,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -1847,6 +1890,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -1890,6 +1934,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -2247,7 +2292,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2262,7 +2306,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2423,7 +2466,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2438,7 +2480,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2527,8 +2568,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -2592,7 +2633,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2607,7 +2647,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2768,7 +2807,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2783,7 +2821,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2881,6 +2918,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -2892,6 +2932,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -3007,6 +3081,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -3026,6 +3101,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -3069,6 +3145,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -3098,6 +3175,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic dnsZones: description: |- List of DNSZones that this solver will be used to solve. @@ -3112,6 +3190,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic matchLabels: additionalProperties: type: string diff --git a/assets/optional/cert-manager/crd/bases/clusterissuers.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/clusterissuers.cert-manager.io-crd.yaml index 982e361675..ef987caff9 100644 --- a/assets/optional/cert-manager/crd/bases/clusterissuers.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/clusterissuers.cert-manager.io-crd.yaml @@ -6,9 +6,10 @@ metadata: helm.sh/resource-policy: keep labels: app: cert-manager + app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: clusterissuers.cert-manager.io spec: group: cert-manager.io @@ -24,10 +25,10 @@ spec: scope: Cluster versions: - additionalPrinterColumns: - - jsonPath: .status.conditions[?(@.type=="Ready")].status + - jsonPath: .status.conditions[?(@.type == "Ready")].status name: Ready type: string - - jsonPath: .status.conditions[?(@.type=="Ready")].message + - jsonPath: .status.conditions[?(@.type == "Ready")].message name: Status priority: 1 type: string @@ -520,9 +521,15 @@ spec: description: |- The IP address or hostname of an authoritative DNS server supporting RFC2136 in the form host:port. If the host is an IPv6 address it must be - enclosed in square brackets (e.g [2001:db8::1]) ; port is optional. + enclosed in square brackets (e.g [2001:db8::1]); port is optional. This field is required. type: string + protocol: + description: Protocol to use for dynamic DNS update queries. Valid values are (case-sensitive) ``TCP`` and ``UDP``; ``UDP`` (default). + enum: + - TCP + - UDP + type: string tsigAlgorithm: description: |- The TSIG Algorithm configured in the DNS supporting RFC2136. Used only @@ -614,6 +621,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic name: description: Name of the ServiceAccount used to request a token. type: string @@ -890,6 +898,7 @@ spec: - name type: object type: array + x-kubernetes-list-type: atomic podTemplate: description: |- Optional pod template used to configure the ACME challenge solver pods @@ -1185,7 +1194,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1200,7 +1208,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1361,7 +1368,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1376,7 +1382,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1465,8 +1470,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -1530,7 +1535,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1545,7 +1549,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1706,7 +1709,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1721,7 +1723,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1819,6 +1820,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -1830,6 +1834,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -1945,6 +1983,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -1964,6 +2003,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -2007,6 +2047,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -2364,7 +2405,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2379,7 +2419,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2540,7 +2579,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2555,7 +2593,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2644,8 +2681,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -2709,7 +2746,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2724,7 +2760,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2885,7 +2920,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2900,7 +2934,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2998,6 +3031,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -3009,6 +3045,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -3124,6 +3194,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -3143,6 +3214,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -3186,6 +3258,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -3215,6 +3288,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic dnsZones: description: |- List of DNSZones that this solver will be used to solve. @@ -3229,6 +3303,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic matchLabels: additionalProperties: type: string @@ -3239,6 +3314,7 @@ spec: type: object type: object type: array + x-kubernetes-list-type: atomic required: - privateKeySecretRef - server @@ -3257,6 +3333,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic issuingCertificateURLs: description: |- IssuingCertificateURLs is a list of URLs which this issuer should embed into certificates @@ -3265,6 +3342,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic ocspServers: description: |- The OCSP server list is an X.509 v3 extension that defines a list of @@ -3275,6 +3353,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic secretName: description: |- SecretName is the name of the secret used to sign Certificates issued @@ -3296,6 +3375,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic type: object vault: description: |- @@ -3423,6 +3503,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic name: description: Name of the ServiceAccount used to request a token. type: string diff --git a/assets/optional/cert-manager/crd/bases/issuers.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/issuers.cert-manager.io-crd.yaml index 0befddce16..79d98b84b4 100644 --- a/assets/optional/cert-manager/crd/bases/issuers.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/issuers.cert-manager.io-crd.yaml @@ -9,7 +9,7 @@ metadata: app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: issuers.cert-manager.io spec: group: cert-manager.io @@ -25,10 +25,10 @@ spec: scope: Namespaced versions: - additionalPrinterColumns: - - jsonPath: .status.conditions[?(@.type=="Ready")].status + - jsonPath: .status.conditions[?(@.type == "Ready")].status name: Ready type: string - - jsonPath: .status.conditions[?(@.type=="Ready")].message + - jsonPath: .status.conditions[?(@.type == "Ready")].message name: Status priority: 1 type: string @@ -520,9 +520,15 @@ spec: description: |- The IP address or hostname of an authoritative DNS server supporting RFC2136 in the form host:port. If the host is an IPv6 address it must be - enclosed in square brackets (e.g [2001:db8::1]) ; port is optional. + enclosed in square brackets (e.g [2001:db8::1]); port is optional. This field is required. type: string + protocol: + description: Protocol to use for dynamic DNS update queries. Valid values are (case-sensitive) ``TCP`` and ``UDP``; ``UDP`` (default). + enum: + - TCP + - UDP + type: string tsigAlgorithm: description: |- The TSIG Algorithm configured in the DNS supporting RFC2136. Used only @@ -614,6 +620,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic name: description: Name of the ServiceAccount used to request a token. type: string @@ -890,6 +897,7 @@ spec: - name type: object type: array + x-kubernetes-list-type: atomic podTemplate: description: |- Optional pod template used to configure the ACME challenge solver pods @@ -1185,7 +1193,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1200,7 +1207,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1361,7 +1367,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1376,7 +1381,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1465,8 +1469,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -1530,7 +1534,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1545,7 +1548,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1706,7 +1708,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1721,7 +1722,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -1819,6 +1819,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -1830,6 +1833,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -1945,6 +1982,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -1964,6 +2002,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -2007,6 +2046,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -2364,7 +2404,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2379,7 +2418,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2540,7 +2578,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2555,7 +2592,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2644,8 +2680,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm fields are added per-node to find the most preferred node(s) @@ -2709,7 +2745,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2724,7 +2759,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2885,7 +2919,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both matchLabelKeys and labelSelector. Also, matchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2900,7 +2933,6 @@ spec: pod labels will be ignored. The default value is empty. The same key is forbidden to exist in both mismatchLabelKeys and labelSelector. Also, mismatchLabelKeys cannot be set when labelSelector isn't set. - This is a beta field and requires enabling MatchLabelKeysInPodAffinity feature gate (enabled by default). items: type: string type: array @@ -2998,6 +3030,9 @@ spec: type: object x-kubernetes-map-type: atomic type: array + x-kubernetes-list-map-keys: + - name + x-kubernetes-list-type: map nodeSelector: additionalProperties: type: string @@ -3009,6 +3044,40 @@ spec: priorityClassName: description: If specified, the pod's priorityClassName. type: string + resources: + description: |- + If specified, the pod's resource requirements. + These values override the global resource configuration flags. + Note that when only specifying resource limits, ensure they are greater than or equal + to the corresponding global resource requests configured via controller flags + (--acme-http01-solver-resource-request-cpu, --acme-http01-solver-resource-request-memory). + Kubernetes will reject pod creation if limits are lower than requests, causing challenge failures. + properties: + limits: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Limits describes the maximum amount of compute resources allowed. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + requests: + additionalProperties: + anyOf: + - type: integer + - type: string + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + description: |- + Requests describes the minimum amount of compute resources required. + If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, + otherwise to the global values configured via controller flags. Requests cannot exceed Limits. + More info: https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/ + type: object + type: object securityContext: description: If specified, the pod's security context properties: @@ -3124,6 +3193,7 @@ spec: format: int64 type: integer type: array + x-kubernetes-list-type: atomic sysctls: description: |- Sysctls hold a list of namespaced sysctls used for the pod. Pods with unsupported @@ -3143,6 +3213,7 @@ spec: - value type: object type: array + x-kubernetes-list-type: atomic type: object serviceAccountName: description: If specified, the pod's service account @@ -3186,6 +3257,7 @@ spec: type: string type: object type: array + x-kubernetes-list-type: atomic type: object type: object serviceType: @@ -3215,6 +3287,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic dnsZones: description: |- List of DNSZones that this solver will be used to solve. @@ -3229,6 +3302,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic matchLabels: additionalProperties: type: string @@ -3239,6 +3313,7 @@ spec: type: object type: object type: array + x-kubernetes-list-type: atomic required: - privateKeySecretRef - server @@ -3257,6 +3332,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic issuingCertificateURLs: description: |- IssuingCertificateURLs is a list of URLs which this issuer should embed into certificates @@ -3265,6 +3341,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic ocspServers: description: |- The OCSP server list is an X.509 v3 extension that defines a list of @@ -3275,6 +3352,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic secretName: description: |- SecretName is the name of the secret used to sign Certificates issued @@ -3296,6 +3374,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic type: object vault: description: |- @@ -3423,6 +3502,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic name: description: Name of the ServiceAccount used to request a token. type: string diff --git a/assets/optional/cert-manager/crd/bases/operator.openshift.io_certmanagers.yaml b/assets/optional/cert-manager/crd/bases/operator.openshift.io_certmanagers.yaml index 10bd5254e7..1bacdf1805 100644 --- a/assets/optional/cert-manager/crd/bases/operator.openshift.io_certmanagers.yaml +++ b/assets/optional/cert-manager/crd/bases/operator.openshift.io_certmanagers.yaml @@ -3,7 +3,7 @@ apiVersion: apiextensions.k8s.io/v1 kind: CustomResourceDefinition metadata: annotations: - controller-gen.kubebuilder.io/version: v0.15.0 + controller-gen.kubebuilder.io/version: v0.19.0 name: certmanagers.operator.openshift.io spec: group: operator.openshift.io @@ -37,7 +37,7 @@ spec: metadata: type: object spec: - description: CertManagerSpec defines the desired state of CertManager + description: CertManagerSpec defines the desired state of CertManager. properties: cainjectorConfig: description: |- @@ -60,8 +60,9 @@ spec: in a Container. properties: name: - description: Name of the environment variable. Must be a - C_IDENTIFIER. + description: |- + Name of the environment variable. + May consist of any printable ASCII characters except '='. type: string value: description: |- @@ -119,6 +120,43 @@ spec: - fieldPath type: object x-kubernetes-map-type: atomic + fileKeyRef: + description: |- + FileKeyRef selects a key of the env file. + Requires the EnvFiles feature gate to be enabled. + properties: + key: + description: |- + The key within the env file. An invalid key will prevent the pod from starting. + The keys defined within a source may consist of any printable ASCII characters except '='. + During Alpha stage of the EnvFiles feature gate, the key size is limited to 128 characters. + type: string + optional: + default: false + description: |- + Specify whether the file or its key must be defined. If the file or key + does not exist, then the env var is not published. + If optional is set to true and the specified key does not exist, + the environment variable will not be set in the Pod's containers. + + If optional is set to false and the specified key does not exist, + an error will be returned during Pod creation. + type: boolean + path: + description: |- + The path within the volume from which to select the file. + Must be relative and may not contain the '..' path or start with '..'. + type: string + volumeName: + description: The name of the volume mount containing + the env file. + type: string + required: + - key + - path + - volumeName + type: object + x-kubernetes-map-type: atomic resourceFieldRef: description: |- Selects a resource of the container: only resources limits and requests @@ -303,8 +341,9 @@ spec: in a Container. properties: name: - description: Name of the environment variable. Must be a - C_IDENTIFIER. + description: |- + Name of the environment variable. + May consist of any printable ASCII characters except '='. type: string value: description: |- @@ -362,6 +401,43 @@ spec: - fieldPath type: object x-kubernetes-map-type: atomic + fileKeyRef: + description: |- + FileKeyRef selects a key of the env file. + Requires the EnvFiles feature gate to be enabled. + properties: + key: + description: |- + The key within the env file. An invalid key will prevent the pod from starting. + The keys defined within a source may consist of any printable ASCII characters except '='. + During Alpha stage of the EnvFiles feature gate, the key size is limited to 128 characters. + type: string + optional: + default: false + description: |- + Specify whether the file or its key must be defined. If the file or key + does not exist, then the env var is not published. + If optional is set to true and the specified key does not exist, + the environment variable will not be set in the Pod's containers. + + If optional is set to false and the specified key does not exist, + an error will be returned during Pod creation. + type: boolean + path: + description: |- + The path within the volume from which to select the file. + Must be relative and may not contain the '..' path or start with '..'. + type: string + volumeName: + description: The name of the volume mount containing + the env file. + type: string + required: + - key + - path + - volumeName + type: object + x-kubernetes-map-type: atomic resourceFieldRef: description: |- Selects a resource of the container: only resources limits and requests @@ -630,7 +706,6 @@ spec: If present, only traffic on the specified protocol AND port will be matched. x-kubernetes-int-or-string: true protocol: - default: TCP description: |- protocol represents the protocol (TCP, UDP, or SCTP) which traffic must match. If not specified, this field defaults to TCP. @@ -846,7 +921,7 @@ spec: For OverrideArgs, --config string Path to a file containing a WebhookConfiguration object used to configure the webhook - --dynamic-serving-ca-secret-name string name of the secret used to store the CA that signs serving certificates certificates + --dynamic-serving-ca-secret-name string name of the secret used to store the CA that signs serving certificates --dynamic-serving-ca-secret-namespace string namespace of the secret used to store the CA that signs serving certificates --dynamic-serving-dns-names strings DNS names that should be present on certificates generated by the dynamic serving CA --v Level number for the log level verbosity @@ -861,8 +936,9 @@ spec: in a Container. properties: name: - description: Name of the environment variable. Must be a - C_IDENTIFIER. + description: |- + Name of the environment variable. + May consist of any printable ASCII characters except '='. type: string value: description: |- @@ -920,6 +996,43 @@ spec: - fieldPath type: object x-kubernetes-map-type: atomic + fileKeyRef: + description: |- + FileKeyRef selects a key of the env file. + Requires the EnvFiles feature gate to be enabled. + properties: + key: + description: |- + The key within the env file. An invalid key will prevent the pod from starting. + The keys defined within a source may consist of any printable ASCII characters except '='. + During Alpha stage of the EnvFiles feature gate, the key size is limited to 128 characters. + type: string + optional: + default: false + description: |- + Specify whether the file or its key must be defined. If the file or key + does not exist, then the env var is not published. + If optional is set to true and the specified key does not exist, + the environment variable will not be set in the Pod's containers. + + If optional is set to false and the specified key does not exist, + an error will be returned during Pod creation. + type: boolean + path: + description: |- + The path within the volume from which to select the file. + Must be relative and may not contain the '..' path or start with '..'. + type: string + volumeName: + description: The name of the volume mount containing + the env file. + type: string + required: + - key + - path + - volumeName + type: object + x-kubernetes-map-type: atomic resourceFieldRef: description: |- Selects a resource of the container: only resources limits and requests @@ -1076,7 +1189,7 @@ spec: type: object type: object status: - description: CertManagerStatus defines the observed state of CertManager + description: CertManagerStatus defines the observed state of CertManager. properties: conditions: description: conditions is a list of conditions and their status diff --git a/assets/optional/cert-manager/crd/bases/operator.openshift.io_istiocsrs.yaml b/assets/optional/cert-manager/crd/bases/operator.openshift.io_istiocsrs.yaml index 99a594ab88..65fb665887 100644 --- a/assets/optional/cert-manager/crd/bases/operator.openshift.io_istiocsrs.yaml +++ b/assets/optional/cert-manager/crd/bases/operator.openshift.io_istiocsrs.yaml @@ -3,7 +3,7 @@ apiVersion: apiextensions.k8s.io/v1 kind: CustomResourceDefinition metadata: annotations: - controller-gen.kubebuilder.io/version: v0.15.0 + controller-gen.kubebuilder.io/version: v0.19.0 labels: app.kubernetes.io/name: istiocsr app.kubernetes.io/part-of: cert-manager-operator @@ -657,8 +657,8 @@ spec: most preferred is the one with the greatest sum of weights, i.e. for each node that meets all of the scheduling requirements (resource request, requiredDuringScheduling anti-affinity expressions, etc.), - compute a sum by iterating through the elements of this field and adding - "weight" to the sum if the node has pods which matches the corresponding podAffinityTerm; the + compute a sum by iterating through the elements of this field and subtracting + "weight" from the sum if the node has pods which matches the corresponding podAffinityTerm; the node(s) with the highest sum are the most preferred. items: description: The weights of all of the matched WeightedPodAffinityTerm @@ -1013,13 +1013,17 @@ spec: This field is immutable once set. properties: group: - description: Group of the resource being referred to. + description: |- + Group of the issuer being referred to. + Defaults to 'cert-manager.io'. type: string kind: - description: Kind of the resource being referred to. + description: |- + Kind of the issuer being referred to. + Defaults to 'Issuer'. type: string name: - description: Name of the resource being referred to. + description: Name of the issuer being referred to. type: string required: - name @@ -1234,7 +1238,7 @@ spec: Claims lists the names of resources, defined in spec.resourceClaims, that are used by this container. - This is an alpha field and requires enabling the + This field depends on the DynamicResourceAllocation feature gate. This field is immutable. It can only be set for containers. @@ -1374,7 +1378,7 @@ spec: type: string conditions: description: conditions holds information about the current state - of the istio-csr agent deployment. + of the operand deployment. items: description: Condition contains details for one aspect of the current state of this API Resource. diff --git a/assets/optional/cert-manager/crd/bases/orders.acme.cert-manager.io-crd.yaml b/assets/optional/cert-manager/crd/bases/orders.acme.cert-manager.io-crd.yaml index d3f94fa34a..2aa9579b10 100644 --- a/assets/optional/cert-manager/crd/bases/orders.acme.cert-manager.io-crd.yaml +++ b/assets/optional/cert-manager/crd/bases/orders.acme.cert-manager.io-crd.yaml @@ -9,7 +9,7 @@ metadata: app.kubernetes.io/component: crds app.kubernetes.io/instance: cert-manager app.kubernetes.io/name: cert-manager - app.kubernetes.io/version: v1.18.4 + app.kubernetes.io/version: v1.19.5 name: orders.acme.cert-manager.io spec: group: acme.cert-manager.io @@ -77,6 +77,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic duration: description: |- Duration is the duration for the not after date for the requested certificate. @@ -90,6 +91,7 @@ spec: items: type: string type: array + x-kubernetes-list-type: atomic issuerRef: description: |- IssuerRef references a properly configured ACME-type Issuer which should @@ -99,13 +101,17 @@ spec: Order will be marked as failed. properties: group: - description: Group of the resource being referred to. + description: |- + Group of the issuer being referred to. + Defaults to 'cert-manager.io'. type: string kind: - description: Kind of the resource being referred to. + description: |- + Kind of the issuer being referred to. + Defaults to 'Issuer'. type: string name: - description: Name of the resource being referred to. + description: Name of the issuer being referred to. type: string required: - name @@ -175,6 +181,7 @@ spec: - url type: object type: array + x-kubernetes-list-type: atomic identifier: description: Identifier is the DNS name to be validated as part of this authorization type: string @@ -212,6 +219,7 @@ spec: - url type: object type: array + x-kubernetes-list-type: atomic certificate: description: |- Certificate is a copy of the PEM encoded certificate for this Order. diff --git a/assets/optional/cert-manager/crd/kustomization.yaml b/assets/optional/cert-manager/crd/kustomization.yaml index 1d22d45723..b88e884756 100644 --- a/assets/optional/cert-manager/crd/kustomization.yaml +++ b/assets/optional/cert-manager/crd/kustomization.yaml @@ -10,6 +10,8 @@ resources: - bases/issuers.cert-manager.io-crd.yaml - bases/orders.acme.cert-manager.io-crd.yaml - bases/operator.openshift.io_istiocsrs.yaml +- bases/operator.openshift.io_trustmanagers.yaml +- bases/customresourcedefinition_bundles.trust.cert-manager.io.yml #+kubebuilder:scaffold:crdkustomizeresource patchesStrategicMerge: diff --git a/assets/optional/cert-manager/manager/images-aarch64.yaml b/assets/optional/cert-manager/manager/images-aarch64.yaml index 1ccfaeaa10..25a7c41e5a 100644 --- a/assets/optional/cert-manager/manager/images-aarch64.yaml +++ b/assets/optional/cert-manager/manager/images-aarch64.yaml @@ -4,9 +4,9 @@ metadata: name: cert-manager-images namespace: cert-manager data: - cert-manager-webhook: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222 - cert-manager-ca-injector: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222 - cert-manager-controller: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222 - cert-manager-acmesolver: registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3258027c0fb9426c9ee3567f6dc0d02b85cb661c23300b230f5b1400b43bac25 - cert-manager-istiocsr: registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:95f5dfa4331fcfb96357ed28f4d7f0fd00d9419d9252e3cff3962aec6cedbeb9 - controller: registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:22f4e686a81fc809e70e3f73206ec221f8081e842243f173308dc1fbc7f02a3e + cert-manager-webhook: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb + cert-manager-ca-injector: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb + cert-manager-controller: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb + cert-manager-acmesolver: registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:2fc3f09ab5195c8b1f105a871aea45fd07958adaf9a6aed9650fcc65465ed293 + cert-manager-istiocsr: registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:d2ee0d44bf8cc001f982bf9abe84d9a41852db4fe3b6cd4939db6ed6f00f3c7a + controller: registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:95f0078a7d626ba7dbb6ad0b081124fdf85d4cf3ae3e051a5c72e45ccd17c284 diff --git a/assets/optional/cert-manager/manager/images-x86_64.yaml b/assets/optional/cert-manager/manager/images-x86_64.yaml index 71aea542a9..c5ab95a3ed 100644 --- a/assets/optional/cert-manager/manager/images-x86_64.yaml +++ b/assets/optional/cert-manager/manager/images-x86_64.yaml @@ -4,9 +4,9 @@ metadata: name: cert-manager-images namespace: cert-manager data: - cert-manager-webhook: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23 - cert-manager-ca-injector: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23 - cert-manager-controller: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23 - cert-manager-acmesolver: registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:155383c4664ea3ed18d0f079be720ad68a5de044448a744d7579af7ff0fc7e0a - cert-manager-istiocsr: registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:41df7aabbce42599bad7fdc721cd12aa6e12d17e1c0658fb3294a1f68483d656 - controller: registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:57a1aea49d7cc275b37b8f52d602a3a9d1601ec6a21a3268dd4903566cb2e335 + cert-manager-webhook: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1 + cert-manager-ca-injector: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1 + cert-manager-controller: registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1 + cert-manager-acmesolver: registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:22d0f5ed590ad447441f6cf115de3bead3b4d62dfb475622389f847664b4cde8 + cert-manager-istiocsr: registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a4111417451c83ddf9af3a045a10e0d39bd0f4cf8f7bcc1992d6fcbd980f0427 + controller: registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:708361988343fb0fc9c10ebdc6a05de75ed038918ece0b7a91888e2cc74f644e diff --git a/assets/optional/cert-manager/manager/manager.yaml b/assets/optional/cert-manager/manager/manager.yaml index 68d65b34b5..59dfe5bb21 100644 --- a/assets/optional/cert-manager/manager/manager.yaml +++ b/assets/optional/cert-manager/manager/manager.yaml @@ -75,21 +75,25 @@ spec: - name: OPERATOR_NAME value: cert-manager-operator - name: RELATED_IMAGE_CERT_MANAGER_WEBHOOK - value: quay.io/jetstack/cert-manager-webhook:latest + value: quay.io/jetstack/cert-manager-webhook:v1.19.5 - name: RELATED_IMAGE_CERT_MANAGER_CA_INJECTOR - value: quay.io/jetstack/cert-manager-cainjector:latest + value: quay.io/jetstack/cert-manager-cainjector:v1.19.5 - name: RELATED_IMAGE_CERT_MANAGER_CONTROLLER - value: quay.io/jetstack/cert-manager-controller:latest + value: quay.io/jetstack/cert-manager-controller:v1.19.5 - name: RELATED_IMAGE_CERT_MANAGER_ACMESOLVER - value: quay.io/jetstack/cert-manager-acmesolver:v1.18.4 + value: quay.io/jetstack/cert-manager-acmesolver:v1.19.5 - name: RELATED_IMAGE_CERT_MANAGER_ISTIOCSR - value: quay.io/jetstack/cert-manager-istio-csr:v0.14.2 + value: quay.io/jetstack/cert-manager-istio-csr:v0.16.0 + - name: RELATED_IMAGE_CERT_MANAGER_TRUST_MANAGER + value: quay.io/jetstack/trust-manager:v0.20.3 - name: OPERAND_IMAGE_VERSION - value: 1.18.4 + value: 1.19.5 - name: ISTIOCSR_OPERAND_IMAGE_VERSION - value: 0.14.2 + value: 0.16.0 + - name: TRUSTMANAGER_OPERAND_IMAGE_VERSION + value: 0.20.3 - name: OPERATOR_IMAGE_VERSION - value: 1.18.1 + value: 1.19.1 - name: OPERATOR_LOG_LEVEL value: '2' - name: TRUSTED_CA_CONFIGMAP_NAME diff --git a/assets/optional/cert-manager/rbac/kustomization.yaml b/assets/optional/cert-manager/rbac/kustomization.yaml index e36e56881d..ca76ce6751 100644 --- a/assets/optional/cert-manager/rbac/kustomization.yaml +++ b/assets/optional/cert-manager/rbac/kustomization.yaml @@ -15,3 +15,7 @@ resources: - auth_proxy_role.yaml - auth_proxy_role_binding.yaml - auth_proxy_client_clusterrole.yaml +# RBAC for reading featuregates.config.openshift.io resource to determine +# feature enabling. +- featuregate_clusterrole.yaml +- featuregate_clusterrole_binding.yaml diff --git a/assets/optional/cert-manager/rbac/role.yaml b/assets/optional/cert-manager/rbac/role.yaml index c387f3a403..ed4472e77d 100644 --- a/assets/optional/cert-manager/rbac/role.yaml +++ b/assets/optional/cert-manager/rbac/role.yaml @@ -226,6 +226,7 @@ rules: resources: - certmanagers/finalizers - istiocsrs/finalizers + - trustmanagers/finalizers verbs: - update - apiGroups: @@ -233,6 +234,7 @@ rules: resources: - certmanagers/status - istiocsrs/status + - trustmanagers/status verbs: - get - patch @@ -241,6 +243,7 @@ rules: - operator.openshift.io resources: - istiocsrs + - trustmanagers verbs: - get - list @@ -275,3 +278,23 @@ rules: - patch - update - watch +- apiGroups: + - trust.cert-manager.io + resources: + - bundles + verbs: + - get + - list + - watch +- apiGroups: + - trust.cert-manager.io + resources: + - bundles/finalizers + verbs: + - update +- apiGroups: + - trust.cert-manager.io + resources: + - bundles/status + verbs: + - patch diff --git a/assets/optional/cert-manager/release-cert-manager-aarch64.json b/assets/optional/cert-manager/release-cert-manager-aarch64.json index af1ec78f24..44cb9138bb 100644 --- a/assets/optional/cert-manager/release-cert-manager-aarch64.json +++ b/assets/optional/cert-manager/release-cert-manager-aarch64.json @@ -1,13 +1,13 @@ { "release": { - "base": "1.18.1" + "base": "1.19.0" }, "images": { - "cert-manager-operator": "registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:22f4e686a81fc809e70e3f73206ec221f8081e842243f173308dc1fbc7f02a3e", - "cert-manager-istiocsr": "registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:95f5dfa4331fcfb96357ed28f4d7f0fd00d9419d9252e3cff3962aec6cedbeb9", - "cert-manager-acmesolver": "registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:3258027c0fb9426c9ee3567f6dc0d02b85cb661c23300b230f5b1400b43bac25", - "cert-manager-webhook": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222", - "cert-manager-ca-injector": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222", - "cert-manager-controller": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:f1b903ff69100fa938d6bdf4d730d35158eec905351344a246e30ef14c847222" + "cert-manager-operator": "registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:95f0078a7d626ba7dbb6ad0b081124fdf85d4cf3ae3e051a5c72e45ccd17c284", + "cert-manager-istiocsr": "registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:d2ee0d44bf8cc001f982bf9abe84d9a41852db4fe3b6cd4939db6ed6f00f3c7a", + "cert-manager-acmesolver": "registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:2fc3f09ab5195c8b1f105a871aea45fd07958adaf9a6aed9650fcc65465ed293", + "cert-manager-webhook": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb", + "cert-manager-ca-injector": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb", + "cert-manager-controller": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:4cc93d8ef2f67bad59fbaa623e43d5ed2223169bce748adcdd242beae2d1c1bb" } } diff --git a/assets/optional/cert-manager/release-cert-manager-x86_64.json b/assets/optional/cert-manager/release-cert-manager-x86_64.json index 40fb38817f..0cb39be3f3 100644 --- a/assets/optional/cert-manager/release-cert-manager-x86_64.json +++ b/assets/optional/cert-manager/release-cert-manager-x86_64.json @@ -1,13 +1,13 @@ { "release": { - "base": "1.18.1" + "base": "1.19.0" }, "images": { - "cert-manager-operator": "registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:57a1aea49d7cc275b37b8f52d602a3a9d1601ec6a21a3268dd4903566cb2e335", - "cert-manager-istiocsr": "registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:41df7aabbce42599bad7fdc721cd12aa6e12d17e1c0658fb3294a1f68483d656", - "cert-manager-acmesolver": "registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:155383c4664ea3ed18d0f079be720ad68a5de044448a744d7579af7ff0fc7e0a", - "cert-manager-webhook": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23", - "cert-manager-ca-injector": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23", - "cert-manager-controller": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:09c857f0c20721d6b447f5f567182befc1ca6157128225849117a5c830feab23" + "cert-manager-operator": "registry.redhat.io/cert-manager/cert-manager-operator-rhel9@sha256:708361988343fb0fc9c10ebdc6a05de75ed038918ece0b7a91888e2cc74f644e", + "cert-manager-istiocsr": "registry.redhat.io/cert-manager/cert-manager-istio-csr-rhel9@sha256:a4111417451c83ddf9af3a045a10e0d39bd0f4cf8f7bcc1992d6fcbd980f0427", + "cert-manager-acmesolver": "registry.redhat.io/cert-manager/jetstack-cert-manager-acmesolver-rhel9@sha256:22d0f5ed590ad447441f6cf115de3bead3b4d62dfb475622389f847664b4cde8", + "cert-manager-webhook": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1", + "cert-manager-ca-injector": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1", + "cert-manager-controller": "registry.redhat.io/cert-manager/jetstack-cert-manager-rhel9@sha256:67bb018311dbb0435fd3396f9132aa33db43da9cdef92e4fe17a6c55e66c8de1" } } diff --git a/rebase.log b/rebase.log index ad1d7ad190..185620dc42 100644 --- a/rebase.log +++ b/rebase.log @@ -1,126 +1,128 @@ rebase.sh: -# Rebasing to registry.ci.openshift.org/ocp/release:4.21.0-0.nightly-2025-10-22-123727 and registry.ci.openshift.org/ocp-arm64/release-arm64:4.21.0-0.nightly-arm64-2025-10-22-190453 -# Fetching release info for registry.ci.openshift.org/ocp/release:4.21.0-0.nightly-2025-10-22-123727 (amd64) -# Fetching release info for registry.ci.openshift.org/ocp-arm64/release-arm64:4.21.0-0.nightly-arm64-2025-10-22-190453 (arm64) -# Extracting registry.ci.openshift.org/ocp/release:4.21.0-0.nightly-2025-10-22-123727 manifest content -# Cloning registry.ci.openshift.org/ocp/release:4.21.0-0.nightly-2025-10-22-123727 component repos +# Rebasing to registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812 and registry.ci.openshift.org/ocp-arm64/release-arm64:4.22.0-0.nightly-arm64-2026-06-29-132233 +# Fetching release info for registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812 (amd64) +# Fetching release info for registry.ci.openshift.org/ocp-arm64/release-arm64:4.22.0-0.nightly-arm64-2026-06-29-132233 (arm64) +# Extracting registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812 manifest content +# Cloning registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812 component repos Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/api/.git/ -HEAD is now at 8c9accaf Merge pull request #2502 from jsafrane/MutableCSINodeAllocatableCount-tp +HEAD is now at 694421e6 Merge pull request #2826 from tssurya/fg-evpn-ga Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-csi-snapshot-controller-operator/.git/ -HEAD is now at b022cf7 Merge pull request #245 from openshift-bot/art-consistency-openshift-4.21-ose-cluster-csi-snapshot-controller-operator +HEAD is now at 4847d2e Merge pull request #280 from openshift-cherrypick-robot/cherry-pick-278-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-dns-operator/.git/ -HEAD is now at 2ec8a3d Merge pull request #448 from davidesalerno/NE-2138 +HEAD is now at 3d21411 Merge pull request #467 from bentito/fix-dns-service-dual-stack Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-ingress-operator/.git/ -HEAD is now at 0cac97a Merge pull request #1291 from rhamini3/ci-cluster-ossm +HEAD is now at 84ebd6e Merge pull request #1461 from openshift-cherrypick-robot/cherry-pick-1453-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-kube-apiserver-operator/.git/ -HEAD is now at adc82f6 Merge pull request #1939 from bertinatto/rebase-1.34 +HEAD is now at 9c413cd Merge pull request #2187 from openshift-cherrypick-robot/cherry-pick-2174-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-kube-controller-manager-operator/.git/ -HEAD is now at ffe5113 Merge pull request #888 from bertinatto/rebase-1.34 +HEAD is now at 95150ed Merge pull request #931 from gangwgr/nw-policy-cases-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-kube-scheduler-operator/.git/ -HEAD is now at 10d89b5 Merge pull request #583 from bertinatto/rebase-1.34 +HEAD is now at 51ea59a Merge pull request #640 from openshift-cherrypick-robot/cherry-pick-638-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-network-operator/.git/ -HEAD is now at a587975 Merge pull request #2808 from maiqueb/api-l2udn-masked-subnets +HEAD is now at 899d3bc Merge pull request #3009 from tsorya/cherry-pick-2941-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-openshift-controller-manager-operator/.git/ -HEAD is now at f90be06 Merge pull request #399 from openshift-bot/art-consistency-openshift-4.21-ose-cluster-openshift-controller-manager-operator +HEAD is now at 2d2699e Merge pull request #436 from kaleemsiddiqu/cherry-pick-428-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/cluster-policy-controller/.git/ -HEAD is now at ef70396 Merge pull request #169 from openshift-bot/art-consistency-openshift-4.21-cluster-policy-controller +HEAD is now at 44985a1 Merge pull request #174 from vincentdephily/vdp-bump-k8s-1.35 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/csi-external-snapshotter/.git/ -HEAD is now at 15313fb Merge pull request #188 from openshift-bot/art-consistency-openshift-4.21-ose-csi-snapshot-controller +HEAD is now at 28f6e06 Merge pull request #222 from openshift-cherrypick-robot/cherry-pick-207-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/etcd/.git/ -HEAD is now at e2b3dfdf Merge pull request #342 from openshift-bot/art-consistency-openshift-4.21-ose-etcd +HEAD is now at d8d67b8c Merge pull request #356 from locriandev/openshift-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/kubernetes/.git/ -HEAD is now at 96593f323 Merge pull request #2484 from bertinatto/rebase-1.34 +HEAD is now at 7250fd5b9 Merge pull request #2676 from openshift-cherrypick-robot/cherry-pick-2668-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/kubernetes-kube-storage-version-migrator/.git/ -HEAD is now at ce5ff17 Merge pull request #234 from openshift-bot/art-consistency-openshift-4.21-ose-kube-storage-version-migrator +HEAD is now at 72835e4 Merge pull request #237 from sanchezl/leader-election-2026 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/machine-config-operator/.git/ -HEAD is now at 06e7b70a Merge pull request #5332 from djoshy/add-cpms-support +HEAD is now at bc792586 Merge pull request #6218 from openshift-cherrypick-robot/cherry-pick-6081-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/openshift-controller-manager/.git/ -HEAD is now at 433bd50 Merge pull request #414 from openshift-bot/art-consistency-openshift-4.21-ose-openshift-controller-manager +HEAD is now at 26d20fe Merge pull request #429 from ricardomaraschini/CNTRLPLANE-2769 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/operator-framework-olm/.git/ -HEAD is now at a0b88f9a Merge pull request #1126 from Xia-Zhao-rh/opm-cases +HEAD is now at de6260e5 Merge pull request #1292 from tmshort/OCPBUGS-84411 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/route-controller-manager/.git/ -HEAD is now at c337cf4 Merge pull request #65 from openshift-bot/art-consistency-openshift-4.21-ose-route-controller-manager +HEAD is now at 55f77ca Merge pull request #90 from rikatz/bump-gogrpc-xnet-4-22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/service-ca-operator/.git/ -HEAD is now at e5d65c6 Merge pull request #276 from openshift-bot/art-consistency-openshift-4.21-ose-service-ca-operator +HEAD is now at 9fff46a Merge pull request #353 from openshift-cherrypick-robot/cherry-pick-338-to-release-4.22 -# Cloning registry.ci.openshift.org/ocp/release:4.21.0-0.nightly-2025-10-22-123727 image repos +# Cloning registry.ci.openshift.org/ocp/release:4.22.0-0.nightly-2026-06-25-210812 image repos Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/oc/.git/ -HEAD is now at 8836b663 Merge pull request #2113 from wking/remove-obsolete-precheckEnabled +HEAD is now at 062bc544 Merge pull request #2266 from openshift-cherrypick-robot/cherry-pick-2230-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/coredns/.git/ -HEAD is now at 91ae57f Merge pull request #154 from openshift-bot/art-consistency-openshift-4.21-coredns +HEAD is now at 9a71d9a Merge pull request #185 from bentito/backport-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/csi-external-snapshotter/.git/ -HEAD is now at 15313fb Merge pull request #188 from openshift-bot/art-consistency-openshift-4.21-ose-csi-snapshot-controller +HEAD is now at 28f6e06 Merge pull request #222 from openshift-cherrypick-robot/cherry-pick-207-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/router/.git/ -HEAD is now at 526b4d0 Merge pull request #679 from openshift-bot/art-consistency-openshift-4.21-ose-haproxy-router-base +HEAD is now at 5586fa9 Merge pull request #793 from MrSanketkumar/OCPBUGS-87167-cve-2026-46579-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/kube-rbac-proxy/.git/ -HEAD is now at cd63668 Merge pull request #126 from openshift-bot/art-consistency-openshift-4.21-kube-rbac-proxy +HEAD is now at d12e274 Merge pull request #133 from ibihim/merge-v0.21.1-downstream lvms_operator not from release payload, skipping Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/ovn-kubernetes/.git/ -HEAD is now at a573f44e Merge pull request #2772 from openshift-bot/art-consistency-openshift-4.21-ovn-kubernetes-microshift +HEAD is now at 8d3b38cd Merge pull request #3244 from openshift/sync-main-to-release-4.22-06-10-2026 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/kubernetes/.git/ -HEAD is now at 96593f323 Merge pull request #2484 from bertinatto/rebase-1.34 +HEAD is now at 7250fd5b9 Merge pull request #2676 from openshift-cherrypick-robot/cherry-pick-2668-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/amd64/service-ca-operator/.git/ -HEAD is now at e5d65c6 Merge pull request #276 from openshift-bot/art-consistency-openshift-4.21-ose-service-ca-operator +HEAD is now at 9fff46a Merge pull request #353 from openshift-cherrypick-robot/cherry-pick-338-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/oc/.git/ -HEAD is now at 8836b663 Merge pull request #2113 from wking/remove-obsolete-precheckEnabled +HEAD is now at 062bc544 Merge pull request #2266 from openshift-cherrypick-robot/cherry-pick-2230-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/coredns/.git/ -HEAD is now at 91ae57f Merge pull request #154 from openshift-bot/art-consistency-openshift-4.21-coredns +HEAD is now at 9a71d9a Merge pull request #185 from bentito/backport-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/csi-external-snapshotter/.git/ -HEAD is now at 15313fb Merge pull request #188 from openshift-bot/art-consistency-openshift-4.21-ose-csi-snapshot-controller +HEAD is now at 28f6e06 Merge pull request #222 from openshift-cherrypick-robot/cherry-pick-207-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/router/.git/ -HEAD is now at 526b4d0 Merge pull request #679 from openshift-bot/art-consistency-openshift-4.21-ose-haproxy-router-base +HEAD is now at 5586fa9 Merge pull request #793 from MrSanketkumar/OCPBUGS-87167-cve-2026-46579-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/kube-rbac-proxy/.git/ -HEAD is now at cd63668 Merge pull request #126 from openshift-bot/art-consistency-openshift-4.21-kube-rbac-proxy +HEAD is now at d12e274 Merge pull request #133 from ibihim/merge-v0.21.1-downstream lvms_operator not from release payload, skipping Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/ovn-kubernetes/.git/ -HEAD is now at a573f44e Merge pull request #2772 from openshift-bot/art-consistency-openshift-4.21-ovn-kubernetes-microshift +HEAD is now at 8d3b38cd Merge pull request #3244 from openshift/sync-main-to-release-4.22-06-10-2026 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/kubernetes/.git/ -HEAD is now at 96593f323 Merge pull request #2484 from bertinatto/rebase-1.34 +HEAD is now at 7250fd5b9 Merge pull request #2676 from openshift-cherrypick-robot/cherry-pick-2668-to-release-4.22 Initialized empty Git repository in /go/src/github.com/openshift/microshift/_output/staging/arm64/service-ca-operator/.git/ -HEAD is now at e5d65c6 Merge pull request #276 from openshift-bot/art-consistency-openshift-4.21-ose-service-ca-operator +HEAD is now at 9fff46a Merge pull request #353 from openshift-cherrypick-robot/cherry-pick-338-to-release-4.22 Warning: env var PULL_BASE_REF not found or empty, falling back to local active branch. -error: branch 'rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22' not found -Switched to a new branch 'rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22' +error: branch 'rebase-release-4.22-4.22.0-0.nightly-2026-06-25-210812_amd64-2026-06-25_arm64-2026-06-29' not found +Switched to a new branch 'rebase-release-4.22-4.22.0-0.nightly-2026-06-25-210812_amd64-2026-06-25_arm64-2026-06-29' ## Updating last_rebase.sh ## Committing changes to last_rebase.sh -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 c63c22945] update last_rebase.sh +[rebase-release-4.22-4.22.0-0.nightly-2026-06-25-210812_amd64-2026-06-25_arm64-2026-06-29 7b4c654b7] update last_rebase.sh 1 file changed, 1 insertion(+), 1 deletion(-) +api embedded-component no change + cluster-csi-snapshot-controller-operator embedded-component no change cluster-dns-operator embedded-component no change @@ -135,6 +137,8 @@ cluster-kube-scheduler-operator embedded-component no change cluster-network-operator embedded-component no change +cluster-openshift-controller-manager-operator embedded-component no change + cluster-policy-controller embedded-component no change csi-external-snapshotter embedded-component no change @@ -145,295 +149,327 @@ kubernetes embedded-component no change kubernetes-kube-storage-version-migrator embedded-component no change +machine-config-operator embedded-component no change + +openshift-controller-manager embedded-component no change + +operator-framework-olm embedded-component no change + route-controller-manager embedded-component no change service-ca-operator embedded-component no change +oc image-amd64 no change + coredns image-amd64 no change csi-external-snapshotter image-amd64 no change router image-amd64 no change +kube-rbac-proxy image-amd64 no change + +ovn-kubernetes image-amd64 no change + kubernetes image-amd64 no change service-ca-operator image-amd64 no change +oc image-arm64 no change + coredns image-arm64 no change csi-external-snapshotter image-arm64 no change router image-arm64 no change +kube-rbac-proxy image-arm64 no change + +ovn-kubernetes image-arm64 no change + kubernetes image-arm64 no change service-ca-operator image-arm64 no change -## Committing changes to changelog -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 aa31d603e] update changelog - 2 files changed, 68 insertions(+), 5138 deletions(-) # Updating microshift/go.mod -go mod edit -require github.com/openshift/cluster-policy-controller@ef703966fe6e82f5f255b06bc5c758f105bf8b28 -go: downloading github.com/stretchr/testify v1.11.1 -go: downloading github.com/openshift/api v0.0.0-20251015095338-264e80a2b6e7 -go: downloading github.com/openshift/client-go v0.0.0-20251015124057-db0dee36e235 -go: downloading github.com/openshift/library-go v0.0.0-20251015151611-6fc7a74b67c5 -go: downloading k8s.io/utils v0.0.0-20250604170112-4c0f3b243397 +go mod edit -require github.com/openshift/cluster-policy-controller@44985a1306411101c84dd5081598fc928b432321 go: downloading sigs.k8s.io/yaml v1.6.0 +go: downloading github.com/stretchr/testify v1.11.1 +go: downloading github.com/openshift/api v0.0.0-20260309155933-45fd88d185dd +go: downloading github.com/openshift/client-go v0.0.0-20260306160707-3935d929fc7d +go: downloading github.com/openshift/library-go v0.0.0-20260303171201-5d9eb6295ff6 +go: downloading k8s.io/utils v0.0.0-20260210185600-b8788abfbbc2 go: downloading github.com/fsnotify/fsnotify v1.9.0 -go: downloading github.com/vishvananda/netlink v1.3.1 +go: downloading github.com/spf13/cobra v1.10.2 go: downloading github.com/coreos/go-systemd v0.0.0-20190321100706-95778dfbb74e -go: downloading sigs.k8s.io/kustomize/kyaml v0.20.1 -go: downloading github.com/spf13/cobra v1.9.1 +go: downloading github.com/vishvananda/netlink v1.3.1 +go: downloading go.etcd.io/etcd/client/pkg/v3 v3.6.8 go: downloading github.com/apparentlymart/go-cidr v1.1.0 -go: downloading go.etcd.io/etcd/client/pkg/v3 v3.6.4 -go: downloading github.com/evanphx/json-patch v4.12.0+incompatible -go: downloading go.etcd.io/etcd/client/v3 v3.6.4 go: downloading github.com/spf13/pflag v1.0.10 -go: downloading github.com/openshift/build-machinery-go v0.0.0-20250602125535-1b6d00b8c37c -go: downloading github.com/squat/generic-device-plugin v0.0.0-20251019101956-043a51e18f31 +go: downloading go.etcd.io/etcd/client/v3 v3.6.8 +go: downloading github.com/evanphx/json-patch v4.12.0+incompatible go: downloading gopkg.in/yaml.v3 v3.0.1 +go: downloading github.com/squat/generic-device-plugin v0.0.0-20251019101956-043a51e18f31 +go: downloading sigs.k8s.io/kustomize/kyaml v0.20.1 go: downloading github.com/go-kit/kit v0.9.0 -go: downloading github.com/coreos/go-systemd/v22 v22.5.0 -go: downloading github.com/openshift/cluster-policy-controller v0.0.0-20251007100337-ef703966fe6e -go: downloading github.com/miekg/dns v1.1.63 +go: downloading github.com/coreos/go-systemd/v22 v22.7.0 +go: downloading github.com/openshift/cluster-policy-controller v0.0.0-20260311142746-44985a130641 +go: downloading github.com/openshift/build-machinery-go v0.0.0-20251023084048-5d77c1a5e5af +go: downloading github.com/openshift/route-controller-manager v0.0.0-20260519230436-55f77ca4cf03 go: downloading sigs.k8s.io/kustomize/api v0.20.1 -go: downloading github.com/openshift/route-controller-manager v0.0.0-20251008111043-c337cf413bbb +go: downloading github.com/miekg/dns v1.1.63 go: downloading gopkg.in/yaml.v2 v2.4.0 -go: downloading golang.org/x/sys v0.36.0 -go: downloading k8s.io/kube-openapi v0.0.0-20250710124328-f3f2b991d03b +go: downloading golang.org/x/sys v0.44.0 +go: downloading k8s.io/kube-openapi v0.0.0-20260304202019-5b3e3fdb0acf go: downloading github.com/gogo/protobuf v1.3.2 go: downloading github.com/golang/snappy v0.0.4 -go: downloading github.com/openshift/kubernetes-kube-storage-version-migrator v0.0.3-0.20251007192956-ce5ff17e9a81 +go: downloading github.com/openshift/kubernetes-kube-storage-version-migrator v0.0.3-0.20260304192652-72835e43c775 go: downloading github.com/prometheus/client_model v0.6.2 -go: downloading github.com/prometheus/common v0.66.1 go: downloading github.com/google/go-cmp v0.7.0 +go: downloading github.com/prometheus/common v0.67.5 go: downloading github.com/prometheus/prometheus v0.302.1 go: downloading github.com/go-logr/logr v1.4.3 -go: downloading github.com/fxamacker/cbor/v2 v2.9.0 -go: downloading sigs.k8s.io/randfill v1.0.0 +go: downloading go.yaml.in/yaml/v2 v2.4.4 +go: downloading go.yaml.in/yaml/v3 v3.0.4 go: downloading github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc go: downloading github.com/pmezard/go-difflib v1.0.1-0.20181226105442-5d4384ee4fb2 -go: downloading sigs.k8s.io/structured-merge-diff/v6 v6.3.0 -go: downloading github.com/google/gnostic-models v0.7.0 -go: downloading google.golang.org/protobuf v1.36.8 +go: downloading github.com/fxamacker/cbor/v2 v2.9.0 +go: downloading sigs.k8s.io/randfill v1.0.0 +go: downloading sigs.k8s.io/structured-merge-diff/v6 v6.3.2 +go: downloading github.com/google/gnostic-models v0.7.1 +go: downloading google.golang.org/protobuf v1.36.11 go: downloading github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 -go: downloading golang.org/x/net v0.43.0 -go: downloading golang.org/x/term v0.35.0 -go: downloading go.yaml.in/yaml/v2 v2.4.2 -go: downloading go.yaml.in/yaml/v3 v3.0.4 -go: downloading github.com/vishvananda/netns v0.0.5 -go: downloading gopkg.in/evanphx/json-patch.v4 v4.12.0 +go: downloading golang.org/x/net v0.54.0 +go: downloading golang.org/x/term v0.43.0 go: downloading github.com/inconshreveable/mousetrap v1.1.0 -go: downloading github.com/pkg/errors v0.9.1 go: downloading github.com/google/uuid v1.6.0 -go: downloading go.uber.org/zap v1.27.0 +go: downloading gopkg.in/evanphx/json-patch.v4 v4.13.0 +go: downloading github.com/vishvananda/netns v0.0.5 +go: downloading github.com/pkg/errors v0.9.1 +go: downloading go.uber.org/zap v1.27.1 go: downloading github.com/coreos/go-semver v0.3.1 -go: downloading go.etcd.io/etcd/api/v3 v3.6.4 -go: downloading google.golang.org/grpc v1.76.0 +go: downloading go.etcd.io/etcd/api/v3 v3.6.8 +go: downloading google.golang.org/grpc v1.81.1 go: downloading github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring v0.74.0 go: downloading gopkg.in/check.v1 v1.0.0-20201130134442-10cb98267c6c -go: downloading sigs.k8s.io/json v0.0.0-20241014173422-cfa47c3a1cc8 -go: downloading github.com/moby/term v0.5.0 +go: downloading sigs.k8s.io/json v0.0.0-20250730193827-2d320260d730 +go: downloading github.com/go-logfmt/logfmt v0.5.1 +go: downloading github.com/go-stack/stack v1.8.1 +go: downloading github.com/go-kit/log v0.2.1 +go: downloading github.com/oklog/run v1.2.0 +go: downloading github.com/prometheus/client_golang v1.23.2 +go: downloading github.com/godbus/dbus/v5 v5.1.0 +go: downloading go.opentelemetry.io/otel/trace v1.43.0 +go: downloading go.opentelemetry.io/otel v1.43.0 go: downloading github.com/liggitt/tabwriter v0.0.0-20181228230101-89fcab3d43de +go: downloading github.com/moby/term v0.5.0 go: downloading go.uber.org/goleak v1.3.0 go: downloading github.com/jonboulle/clockwork v0.5.0 -go: downloading go.opentelemetry.io/otel/trace v1.37.0 -go: downloading golang.org/x/time v0.9.0 -go: downloading github.com/go-logfmt/logfmt v0.5.1 -go: downloading github.com/go-stack/stack v1.8.1 +go: downloading golang.org/x/time v0.15.0 +go: downloading golang.org/x/tools v0.44.0 +go: downloading golang.org/x/sync v0.20.0 go: downloading github.com/MakeNowJust/heredoc v1.0.0 go: downloading github.com/mitchellh/go-wordwrap v1.0.1 go: downloading github.com/russross/blackfriday/v2 v2.1.0 -go: downloading go.opentelemetry.io/otel v1.37.0 -go: downloading github.com/godbus/dbus/v5 v5.1.0 -go: downloading golang.org/x/tools v0.36.0 -go: downloading golang.org/x/sync v0.17.0 go: downloading github.com/blang/semver/v4 v4.0.0 -go: downloading github.com/google/cadvisor v0.52.1 -go: downloading go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.34.0 -go: downloading go.opentelemetry.io/otel/metric v1.37.0 -go: downloading go.opentelemetry.io/otel/sdk v1.37.0 -go: downloading go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.34.0 -go: downloading github.com/go-kit/log v0.2.1 -go: downloading github.com/oklog/run v1.2.0 -go: downloading github.com/prometheus/client_golang v1.23.2 +go: downloading github.com/google/cadvisor v0.53.0 +go: downloading go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.42.0 +go: downloading go.opentelemetry.io/otel/metric v1.43.0 +go: downloading go.opentelemetry.io/otel/sdk v1.43.0 +go: downloading go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.42.0 go: downloading github.com/Microsoft/go-winio v0.6.2 -go: downloading k8s.io/gengo/v2 v2.0.0-20250604051438-85fd79dbfd9f +go: downloading k8s.io/gengo/v2 v2.0.0-20250922181213-ec3ebc5fd46b go: downloading gopkg.in/inf.v0 v0.9.1 go: downloading github.com/x448/float16 v0.8.4 -go: downloading github.com/go-openapi/swag v0.23.0 +go: downloading github.com/go-openapi/swag v0.25.5 go: downloading github.com/json-iterator/go v1.1.12 -go: downloading golang.org/x/oauth2 v0.30.0 +go: downloading golang.org/x/oauth2 v0.36.0 go: downloading github.com/stretchr/objx v0.5.2 -go: downloading github.com/prometheus/procfs v0.16.1 -go: downloading golang.org/x/text v0.29.0 +go: downloading golang.org/x/text v0.37.0 go: downloading github.com/gregjones/httpcache v0.0.0-20190611155906-901d90724c79 go: downloading github.com/peterbourgon/diskv v2.0.1+incompatible +go: downloading github.com/prometheus/procfs v0.20.1 go: downloading go.uber.org/multierr v1.11.0 go: downloading github.com/golang/protobuf v1.5.4 -go: downloading github.com/grpc-ecosystem/grpc-gateway/v2 v2.26.3 -go: downloading google.golang.org/genproto/googleapis/api v0.0.0-20250804133106-a7a43d27e69b -go: downloading google.golang.org/genproto/googleapis/rpc v0.0.0-20250826171959-ef028d996bc1 -go: downloading github.com/go-errors/errors v1.4.2 -go: downloading github.com/go-openapi/jsonreference v0.21.0 +go: downloading github.com/grpc-ecosystem/grpc-gateway/v2 v2.28.0 +go: downloading google.golang.org/genproto/googleapis/api v0.0.0-20260226221140-a57be14db171 go: downloading github.com/kr/pretty v0.3.1 +go: downloading google.golang.org/genproto/googleapis/rpc v0.0.0-20260226221140-a57be14db171 +go: downloading github.com/go-openapi/jsonreference v0.21.5 +go: downloading github.com/go-errors/errors v1.4.2 go: downloading github.com/chai2010/gettext-go v1.0.2 -go: downloading github.com/openshift/onsi-ginkgo/v2 v2.6.1-0.20251001123353-fd5b1fb35db1 -go: downloading github.com/onsi/gomega v1.35.1 go: downloading github.com/exponent-io/jsonpath v0.0.0-20210407135951-1de76d718b3f -go: downloading github.com/creack/pty v1.1.18 -go: downloading gopkg.in/natefinch/lumberjack.v2 v2.2.1 -go: downloading gopkg.in/go-jose/go-jose.v2 v2.6.3 -go: downloading github.com/emicklei/go-restful/v3 v3.12.2 +go: downloading github.com/openshift/onsi-ginkgo/v2 v2.6.1-0.20251120221002-696928a6a0d7 +go: downloading github.com/onsi/gomega v1.38.2 go: downloading github.com/pkg/profile v1.7.0 go: downloading github.com/sirupsen/logrus v1.9.3 -go: downloading go.etcd.io/etcd/server/v3 v3.6.4 +go: downloading github.com/emicklei/go-restful/v3 v3.13.0 go: downloading go.uber.org/atomic v1.11.0 -go: downloading golang.org/x/crypto v0.42.0 -go: downloading go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.59.0 -go: downloading sigs.k8s.io/apiserver-network-proxy/konnectivity-client v0.31.2 +go: downloading golang.org/x/crypto v0.51.0 +go: downloading gopkg.in/natefinch/lumberjack.v2 v2.2.1 +go: downloading gopkg.in/go-jose/go-jose.v2 v2.6.3 +go: downloading go.etcd.io/etcd/server/v3 v3.6.5 +go: downloading github.com/creack/pty v1.1.18 +go: downloading sigs.k8s.io/apiserver-network-proxy/konnectivity-client v0.34.0 +go: downloading go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.67.0 go: downloading github.com/gorilla/websocket v1.5.4-0.20250319132907-e064f32e3674 go: downloading github.com/mxk/go-flowrate v0.0.0-20140419014527-cca7078d478f -go: downloading github.com/openshift/apiserver-library-go v0.0.0-20251015164739-79d04067059d +go: downloading github.com/openshift/apiserver-library-go v0.0.0-20260303173613-cd3676268d31 +go: downloading github.com/beorn7/perks v1.0.1 +go: downloading github.com/cespare/xxhash/v2 v2.3.0 go: downloading github.com/onsi/ginkgo v1.16.5 -go: downloading github.com/google/cel-go v0.26.0 +go: downloading github.com/google/cel-go v0.27.0 go: downloading github.com/robfig/cron/v3 v3.0.1 go: downloading github.com/robfig/cron v1.2.0 -go: downloading github.com/opencontainers/selinux v1.11.1 +go: downloading github.com/opencontainers/selinux v1.13.0 go: downloading github.com/container-storage-interface/spec v1.9.0 go: downloading github.com/libopenstorage/openstorage v1.0.0 go: downloading github.com/go-logr/stdr v1.2.2 -go: downloading go.opentelemetry.io/proto/otlp v1.5.0 +go: downloading go.opentelemetry.io/proto/otlp v1.9.0 +go: downloading go.opentelemetry.io/otel/sdk/metric v1.43.0 go: downloading github.com/opencontainers/cgroups v0.0.3 -go: downloading github.com/cyphar/filepath-securejoin v0.4.1 +go: downloading github.com/cyphar/filepath-securejoin v0.6.0 go: downloading github.com/moby/sys/userns v0.1.0 go: downloading github.com/docker/go-units v0.5.0 -go: downloading github.com/opencontainers/runc v1.2.5 go: downloading go.opentelemetry.io/contrib/instrumentation/github.com/emicklei/go-restful/otelrestful v0.44.0 go: downloading github.com/moby/sys/mountinfo v0.7.2 go: downloading github.com/karrick/godirwalk v1.17.0 -go: downloading github.com/containerd/containerd/api v1.8.0 +go: downloading github.com/containerd/containerd/api v1.9.0 go: downloading github.com/containerd/errdefs v1.0.0 go: downloading github.com/containerd/errdefs/pkg v0.3.0 -go: downloading github.com/opencontainers/runtime-spec v1.2.0 -go: downloading github.com/containerd/typeurl/v2 v2.2.2 +go: downloading github.com/opencontainers/runtime-spec v1.2.1 +go: downloading github.com/containerd/typeurl/v2 v2.2.3 go: downloading golang.org/x/tools/go/packages/packagestest v0.1.1-deprecated -go: downloading github.com/mailru/easyjson v0.7.7 -go: downloading github.com/beorn7/perks v1.0.1 -go: downloading github.com/cespare/xxhash/v2 v2.3.0 +go: downloading github.com/go-openapi/swag/cmdutils v0.25.5 +go: downloading github.com/go-openapi/swag/conv v0.25.5 +go: downloading github.com/go-openapi/swag/fileutils v0.25.5 +go: downloading github.com/go-openapi/swag/jsonname v0.25.5 +go: downloading github.com/go-openapi/swag/jsonutils v0.25.5 +go: downloading github.com/go-openapi/swag/loading v0.25.5 +go: downloading github.com/go-openapi/swag/mangling v0.25.5 +go: downloading github.com/go-openapi/swag/netutils v0.25.5 +go: downloading github.com/go-openapi/swag/stringutils v0.25.5 +go: downloading github.com/go-openapi/swag/typeutils v0.25.5 +go: downloading github.com/go-openapi/swag/yamlutils v0.25.5 +go: downloading github.com/go-openapi/testify/v2 v2.4.0 +go: downloading github.com/modern-go/reflect2 v1.0.3-0.20250322232337-35a7c28c31ee +go: downloading github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd go: downloading github.com/klauspost/compress v1.18.0 go: downloading github.com/kylelemons/godebug v1.1.0 -go: downloading github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd -go: downloading github.com/modern-go/reflect2 v1.0.3-0.20250322232337-35a7c28c31ee go: downloading github.com/google/btree v1.1.3 -go: downloading github.com/grafana/regexp v0.0.0-20240518133315-a468a5bfb3bc -go: downloading github.com/go-openapi/jsonpointer v0.21.0 go: downloading github.com/kr/text v0.2.0 -go: downloading github.com/rogpeppe/go-internal v1.13.1 +go: downloading github.com/rogpeppe/go-internal v1.14.1 +go: downloading github.com/grafana/regexp v0.0.0-20240518133315-a468a5bfb3bc +go: downloading github.com/go-openapi/jsonpointer v0.22.5 go: downloading github.com/go-logr/zapr v1.3.0 -go: downloading github.com/Azure/go-ansiterm v0.0.0-20230124172434-306776ec8161 -go: downloading github.com/grpc-ecosystem/go-grpc-prometheus v1.2.0 -go: downloading go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.60.0 -go: downloading github.com/coreos/go-oidc v2.3.0+incompatible go: downloading github.com/felixge/fgprof v0.9.4 go: downloading github.com/NYTimes/gziphandler v1.1.1 -go: downloading github.com/felixge/httpsnoop v1.0.4 -go: downloading github.com/moby/spdystream v0.5.0 +go: downloading github.com/grpc-ecosystem/go-grpc-prometheus v1.2.0 +go: downloading go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.67.0 +go: downloading github.com/coreos/go-oidc v2.3.0+incompatible +go: downloading github.com/Azure/go-ansiterm v0.0.0-20230124172434-306776ec8161 +go: downloading github.com/moby/spdystream v0.5.1 go: downloading github.com/armon/go-socks5 v0.0.0-20160902184237-e75332964ef5 +go: downloading github.com/felixge/httpsnoop v1.0.4 go: downloading github.com/soheilhy/cmux v0.1.5 go: downloading github.com/tmc/grpc-websocket-proxy v0.0.0-20220101234140-673ab2c3ae75 -go: downloading go.etcd.io/bbolt v1.4.2 -go: downloading go.etcd.io/etcd/pkg/v3 v3.6.4 -go: downloading cel.dev/expr v0.24.0 -go: downloading github.com/stoewer/go-strcase v1.3.0 +go: downloading go.etcd.io/bbolt v1.4.3 +go: downloading go.etcd.io/etcd/pkg/v3 v3.6.5 +go: downloading github.com/distribution/reference v0.6.0 +go: downloading cel.dev/expr v0.25.1 go: downloading github.com/mohae/deepcopy v0.0.0-20170929034955-c48cc78d4826 -go: downloading go.opentelemetry.io/auto/sdk v1.1.0 -go: downloading github.com/cenkalti/backoff/v4 v4.3.0 +go: downloading go.opentelemetry.io/auto/sdk v1.2.1 +go: downloading github.com/cenkalti/backoff/v5 v5.0.3 go: downloading github.com/mistifyio/go-zfs v2.1.2-0.20190413222219-f784269be439+incompatible go: downloading github.com/JeffAshton/win_pdh v0.0.0-20161109143554-76bb4ee9f0ab -go: downloading github.com/distribution/reference v0.6.0 go: downloading github.com/armon/circbuf v0.0.0-20190214190532-5111143e8da2 -go: downloading github.com/Microsoft/hnslib v0.1.1 +go: downloading github.com/Microsoft/hnslib v0.1.2 go: downloading github.com/lithammer/dedent v1.1.0 +go: downloading golang.org/x/mod v0.35.0 go: downloading go.opentelemetry.io/contrib/propagators/b3 v1.19.0 -go: downloading github.com/containerd/ttrpc v1.2.6 +go: downloading github.com/containerd/ttrpc v1.2.7 go: downloading github.com/euank/go-kmsg-parser v2.0.0+incompatible -go: downloading golang.org/x/mod v0.27.0 -go: downloading golang.org/x/tools/go/expect v0.1.0-deprecated -go: downloading github.com/josharian/intern v1.0.0 +go: downloading golang.org/x/tools/go/expect v0.1.1-deprecated +go: downloading github.com/go-openapi/testify/enable/yaml/v2 v2.4.0 +go: downloading github.com/go-openapi/swag/jsonutils/fixtures_test v0.25.5 go: downloading github.com/sergi/go-diff v1.2.0 -go: downloading go.opentelemetry.io/otel/sdk/metric v1.37.0 -go: downloading github.com/fatih/camelcase v1.0.0 +go: downloading github.com/google/pprof v0.0.0-20250403155104-27863c87afa6 go: downloading github.com/pquerna/cachecontrol v0.1.0 -go: downloading github.com/google/pprof v0.0.0-20241210010833-40e02aabc2ad +go: downloading github.com/fatih/camelcase v1.0.0 go: downloading github.com/dustin/go-humanize v1.0.1 go: downloading go.etcd.io/raft/v3 v3.6.0 go: downloading github.com/xiang90/probing v0.0.0-20221125231312-a49e3df8f510 go: downloading github.com/grpc-ecosystem/go-grpc-middleware/providers/prometheus v1.0.1 -go: downloading github.com/antlr4-go/antlr/v4 v4.13.0 +go: downloading github.com/Masterminds/semver/v3 v3.4.0 +go: downloading cyphar.com/go-pathrs v0.2.1 +go: downloading github.com/antlr4-go/antlr/v4 v4.13.1 go: downloading github.com/opencontainers/go-digest v1.0.0 -go: downloading github.com/docker/docker v27.4.1+incompatible +go: downloading github.com/docker/docker v28.2.2+incompatible go: downloading github.com/docker/go-connections v0.5.0 go: downloading github.com/opencontainers/image-spec v1.1.1 go: downloading github.com/monochromegane/go-gitignore v0.0.0-20200626010858-205db1a8cc00 go: downloading github.com/xlab/treeprint v1.2.0 go: downloading github.com/containerd/log v0.1.0 -go: downloading gonum.org/v1/gonum v0.16.0 -go: downloading github.com/golang-jwt/jwt/v5 v5.2.2 +go: downloading gonum.org/v1/gonum v0.17.0 +go: downloading github.com/golang-jwt/jwt/v5 v5.3.0 go: downloading github.com/go-ldap/ldap/v3 v3.4.11 go: downloading github.com/grpc-ecosystem/go-grpc-middleware/v2 v2.3.0 go: downloading github.com/go-task/slim-sprig/v3 v3.0.0 -go: downloading golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56 +go: downloading golang.org/x/exp v0.0.0-20260218203240-3dfff04db8fa go: downloading github.com/Azure/go-ntlmssp v0.0.0-20221128193559-754e69321358 go: downloading github.com/go-asn1-ber/asn1-ber v1.5.8-0.20250403174932-29230038a667 go: downloading github.com/alexbrainman/sspi v0.0.0-20231016080023-1a75b4708caa go: downloading github.com/jcmturner/gokrb5/v8 v8.4.4 go: downloading github.com/jcmturner/gofork v1.7.6 -go: downloading github.com/hashicorp/go-uuid v1.0.3 go: downloading github.com/jcmturner/dnsutils/v2 v2.0.0 +go: downloading github.com/hashicorp/go-uuid v1.0.3 go: downloading github.com/jcmturner/goidentity/v6 v6.0.1 go: downloading github.com/jcmturner/aescts/v2 v2.0.0 go: downloading github.com/jcmturner/rpc/v2 v2.0.3 go: downloading github.com/moby/docker-image-spec v1.3.1 -go mod edit -replace github.com/onsi/ginkgo/v2=github.com/openshift/onsi-ginkgo/v2@v2.6.1-0.20251001123353-fd5b1fb35db1 +go mod edit -replace github.com/onsi/ginkgo/v2=github.com/openshift/onsi-ginkgo/v2@v2.6.1-0.20251120221002-696928a6a0d7 Handling 'k8s.io/klog/v2' dep: cloning 'https://github.com/kubernetes/klog' @ 'v2.130.1' to /go/src/github.com/openshift/microshift/./deps/k8s.io/klog Cloning into '/go/src/github.com/openshift/microshift/./deps/k8s.io/klog'... Handling 'k8s.io/kubernetes' dep: copying /go/src/github.com/openshift/microshift/_output/staging/kubernetes -> /go/src/github.com/openshift/microshift/./deps/github.com/openshift/kubernetes -go mod edit -replace sigs.k8s.io/kube-storage-version-migrator=github.com/openshift/kubernetes-kube-storage-version-migrator@ce5ff17e9a81ce754567e6dd5053d13409c251e9 -Handling 'k8s.io/api' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/apiextensions-apiserver' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/apimachinery' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/apiserver' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/cli-runtime' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/client-go' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/cloud-provider' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/cluster-bootstrap' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/code-generator' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/component-base' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/component-helpers' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/controller-manager' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/cri-api' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/cri-client' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/csi-translation-lib' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/dynamic-resource-allocation' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/endpointslice' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/externaljwt' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kms' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kube-aggregator' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kube-controller-manager' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kube-proxy' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kube-scheduler' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kubectl' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/kubelet' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/metrics' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/mount-utils' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/pod-security-admission' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/sample-apiserver' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/sample-cli-plugin' dep: updating required version to '1.34.1' (for information purposes) -Handling 'k8s.io/sample-controller' dep: updating required version to '1.34.1' (for information purposes) -go mod edit -require github.com/openshift/route-controller-manager@c337cf413bbbfc2154dc1d3c1bf8007ea1edfbc8 -go mod edit -require github.com/openshift/cluster-policy-controller@ef703966fe6e82f5f255b06bc5c758f105bf8b28 +go mod edit -replace sigs.k8s.io/kube-storage-version-migrator=github.com/openshift/kubernetes-kube-storage-version-migrator@72835e43c7754356645e41031f3a99926b4d42e6 +Handling 'k8s.io/api' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/apiextensions-apiserver' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/apimachinery' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/apiserver' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/cli-runtime' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/client-go' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/cloud-provider' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/cluster-bootstrap' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/code-generator' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/component-base' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/component-helpers' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/controller-manager' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/cri-api' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/cri-client' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/csi-translation-lib' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/dynamic-resource-allocation' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/endpointslice' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/externaljwt' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kms' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kube-aggregator' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kube-controller-manager' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kube-proxy' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kube-scheduler' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kubectl' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/kubelet' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/metrics' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/mount-utils' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/pod-security-admission' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/sample-apiserver' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/sample-cli-plugin' dep: updating required version to '1.35.5' (for information purposes) +Handling 'k8s.io/sample-controller' dep: updating required version to '1.35.5' (for information purposes) +go mod edit -require github.com/openshift/route-controller-manager@55f77ca4cf0328b7c4fd7736bce79ebe171a9b6b +go mod edit -require github.com/openshift/cluster-policy-controller@44985a1306411101c84dd5081598fc928b432321 +Running `gofmt -s -l -w` on 856 file(s). +./deps/github.com/openshift/kubernetes/staging/src/k8s.io/apimachinery/third_party/forked/golang/json/fields.go +./deps/github.com/openshift/kubernetes/staging/src/k8s.io/code-generator/third_party/forked/golang/reflect/type.go +./deps/github.com/openshift/kubernetes/staging/src/k8s.io/client-go/third_party/forked/golang/template/exec.go +./deps/github.com/openshift/kubernetes/staging/src/k8s.io/client-go/third_party/forked/golang/template/funcs.go for p in scripts/auto-rebase/rebase_patches/0001-Fix-CSI-initialization-conflict.patch scripts/auto-rebase/rebase_patches/0002-disable-APIrequestcount-controller.patch scripts/auto-rebase/rebase_patches/0003-disable-clusterQuotaMapping-controller.patch scripts/auto-rebase/rebase_patches/0004-remove-config-informer-and-cpu-partitioning-admission-plugin.patch scripts/auto-rebase/rebase_patches/0005-remove-user-informer.patch scripts/auto-rebase/rebase_patches/0006-kcm-no-panic.patch scripts/auto-rebase/rebase_patches/0020-klog-component-names.patch scripts/auto-rebase/rebase_patches/0030-kube-controller-manager-command-context.patch; do \ echo "Applying patch $p"; \ git mailinfo /dev/null /dev/stderr 2<&1- < $p | git apply --reject || exit 1; \ @@ -466,6 +502,8 @@ Checking patch deps/github.com/openshift/kubernetes/openshift-kube-apiserver/ope Applied patch deps/github.com/openshift/kubernetes/openshift-kube-apiserver/openshiftkubeapiserver/patch.go cleanly. Applying patch scripts/auto-rebase/rebase_patches/0006-kcm-no-panic.patch Checking patch deps/github.com/openshift/kubernetes/cmd/kube-controller-manager/app/options/options.go... +Hunk #1 succeeded at 48 (offset 2 lines). +Hunk #2 succeeded at 319 (offset 13 lines). Applied patch deps/github.com/openshift/kubernetes/cmd/kube-controller-manager/app/options/options.go cleanly. Applying patch scripts/auto-rebase/rebase_patches/0020-klog-component-names.patch Checking patch deps/k8s.io/klog/goroutine_labels.go... @@ -477,32 +515,25 @@ Applied patch deps/k8s.io/klog/internal/buffer/buffer.go cleanly. Applied patch deps/k8s.io/klog/internal/buffer/goroutine_labels.go cleanly. Applying patch scripts/auto-rebase/rebase_patches/0030-kube-controller-manager-command-context.patch Checking patch deps/github.com/openshift/kubernetes/cmd/kube-controller-manager/app/controllermanager.go... +Hunk #2 succeeded at 156 (offset -2 lines). Applied patch deps/github.com/openshift/kubernetes/cmd/kube-controller-manager/app/controllermanager.go cleanly. # Updating etcd/go.mod -go mod edit -require github.com/openshift/cluster-policy-controller@ef703966fe6e82f5f255b06bc5c758f105bf8b28 -go: downloading github.com/openshift/etcd/api/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading github.com/openshift/etcd/server/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading k8s.io/klog/v2 v2.130.1 -go: downloading google.golang.org/genproto v0.0.0-20240123012728-ef4313101c80 -go: downloading github.com/grpc-ecosystem/grpc-gateway v1.16.0 -go: downloading github.com/openshift/etcd/client/pkg/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading github.com/openshift/etcd/client/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading github.com/openshift/etcd/pkg/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading github.com/openshift/etcd/raft/v3 v3.5.1-0.20251001062325-e2b3dfdf0379 -go: downloading github.com/grpc-ecosystem/go-grpc-middleware v1.3.0 -go: downloading github.com/golang-jwt/jwt/v4 v4.5.2 -go: downloading go.etcd.io/etcd/client/v2 v2.305.21 +go mod edit -require github.com/openshift/cluster-policy-controller@44985a1306411101c84dd5081598fc928b432321 +go: downloading github.com/openshift/etcd/api/v3 v3.5.0-alpha.0.0.20260312150232-d8d67b8ce849 +go: downloading github.com/openshift/api v0.0.0-20260402091533-d0af9d722390 +go: downloading github.com/openshift/etcd/server/v3 v3.5.0-alpha.0.0.20260312150232-d8d67b8ce849 +go: downloading k8s.io/klog/v2 v2.140.0 +go: downloading github.com/openshift/etcd/client/pkg/v3 v3.0.0-20260312150232-d8d67b8ce849 +go: downloading github.com/openshift/etcd/client/v3 v3.5.0-alpha.0.0.20260312150232-d8d67b8ce849 +go: downloading github.com/openshift/etcd/pkg/v3 v3.5.0-alpha.0.0.20260312150232-d8d67b8ce849 go: downloading github.com/cockroachdb/datadriven v1.0.2 skipping modulepath github.com/openshift/microshift: no or unknown command [] -skipping modulepath github.com/openshift/microshift/pkg/config: no or unknown command [] -skipping modulepath github.com/openshift/microshift/pkg/util/cryptomaterial: no or unknown command [] -go mod edit -replace github.com/onsi/ginkgo/v2=github.com/openshift/onsi-ginkgo/v2@v2.6.1-0.20251001123353-fd5b1fb35db1 -go mod edit -replace go.etcd.io/etcd/api/v3=github.com/openshift/etcd/api/v3@e2b3dfdf037938f7f0c489438eaa1138fd3fadba -go mod edit -replace go.etcd.io/etcd/client/pkg/v3=github.com/openshift/etcd/client/pkg/v3@v3.5.1-0.20251001062325-e2b3dfdf0379 -go mod edit -replace go.etcd.io/etcd/client/v3=github.com/openshift/etcd/client/v3@v3.5.1-0.20251001062325-e2b3dfdf0379 -go mod edit -replace go.etcd.io/etcd/pkg/v3=github.com/openshift/etcd/pkg/v3@v3.5.1-0.20251001062325-e2b3dfdf0379 -go mod edit -replace go.etcd.io/etcd/raft/v3=github.com/openshift/etcd/raft/v3@v3.5.1-0.20251001062325-e2b3dfdf0379 -go mod edit -replace go.etcd.io/etcd/server/v3=github.com/openshift/etcd/server/v3@v3.5.1-0.20251001062325-e2b3dfdf0379 +go mod edit -replace github.com/onsi/ginkgo/v2=github.com/openshift/onsi-ginkgo/v2@v2.6.1-0.20251120221002-696928a6a0d7 +go mod edit -replace go.etcd.io/etcd/api/v3=github.com/openshift/etcd/api/v3@d8d67b8ce849f816d6d23c904098336632e2348f +go mod edit -replace go.etcd.io/etcd/client/pkg/v3=github.com/openshift/etcd/client/pkg/v3@d8d67b8ce849f816d6d23c904098336632e2348f +go mod edit -replace go.etcd.io/etcd/client/v3=github.com/openshift/etcd/client/v3@d8d67b8ce849f816d6d23c904098336632e2348f +go mod edit -replace go.etcd.io/etcd/pkg/v3=github.com/openshift/etcd/pkg/v3@d8d67b8ce849f816d6d23c904098336632e2348f +go mod edit -replace go.etcd.io/etcd/server/v3=github.com/openshift/etcd/server/v3@d8d67b8ce849f816d6d23c904098336632e2348f skipping modulepath k8s.io/api: no or unknown command [] skipping modulepath k8s.io/apiextensions-apiserver: no or unknown command [] skipping modulepath k8s.io/apimachinery: no or unknown command [] @@ -535,207 +566,181 @@ skipping modulepath k8s.io/pod-security-admission: no or unknown command [] skipping modulepath k8s.io/sample-apiserver: no or unknown command [] skipping modulepath k8s.io/sample-cli-plugin: no or unknown command [] skipping modulepath k8s.io/sample-controller: no or unknown command [] -go mod edit -require github.com/openshift/route-controller-manager@c337cf413bbbfc2154dc1d3c1bf8007ea1edfbc8 -go mod edit -require github.com/openshift/cluster-policy-controller@ef703966fe6e82f5f255b06bc5c758f105bf8b28 -## Committing changes to microshift/go.mod -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 53ecde04e] update microshift/go.mod - 2 files changed, 3 insertions(+), 66 deletions(-) -## Updating deps/ directory -## Commiting changes to microshift/deps directory -warning: in the working copy of 'deps/github.com/openshift/kubernetes/vendor/github.com/MakeNowJust/heredoc/README.md', CRLF will be replaced by LF the next time Git touches it -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 c5799d054] update microshift/deps - 4 files changed, 11 insertions(+), 12 deletions(-) +go mod edit -require github.com/openshift/route-controller-manager@55f77ca4cf0328b7c4fd7736bce79ebe171a9b6b +go mod edit -require github.com/openshift/cluster-policy-controller@44985a1306411101c84dd5081598fc928b432321 +Running `gofmt -s -l -w` on 4 file(s). ## Updating microshift/vendor directory /go/src/github.com/openshift/microshift /go/src/github.com/openshift/microshift go mod vendor /go/src/github.com/openshift/microshift -## Commiting changes to microshift/vendor directory -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 472937960] update microshift/vendor - 4 files changed, 8 insertions(+), 29 deletions(-) -Ensuring gofmt -Running `gofmt -s -l -w` on 853 file(s). -./deps/github.com/openshift/kubernetes/staging/src/k8s.io/apimachinery/third_party/forked/golang/json/fields.go -./deps/github.com/openshift/kubernetes/staging/src/k8s.io/client-go/third_party/forked/golang/template/exec.go -./deps/github.com/openshift/kubernetes/staging/src/k8s.io/client-go/third_party/forked/golang/template/funcs.go -./deps/github.com/openshift/kubernetes/staging/src/k8s.io/code-generator/third_party/forked/golang/reflect/type.go -## Commiting gofmt changes to deps directory -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 02821965b] update deps gofmt - 4 files changed, 12 insertions(+), 11 deletions(-) -## Committing changes to etcd/go.mod -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 b4913d986] update etcd/go.mod - 2 files changed, 6 insertions(+), 75 deletions(-) -## Updating deps/ directory ## Updating etcd/vendor directory /go/src/github.com/openshift/microshift/etcd /go/src/github.com/openshift/microshift go mod vendor /go/src/github.com/openshift/microshift -## Commiting changes to etcd/vendor directory -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 fb3d80983] update etcd/vendor - 1 file changed, 26 deletions(-) -Ensuring gofmt -Running `gofmt -s -l -w` on 853 file(s). Rebasing release_*.json -## Committing changes to pkg/release -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 a98b29d30] update component images - 2 files changed, 2 insertions(+), 2 deletions(-) +No changes in component images. Copying manifests -2025-10-23 04:18:02,339 INFO Clearing directory assets/components/openshift-dns/dns/ -2025-10-23 04:18:02,340 DEBUG Copying assets/components/openshift-dns/dns/cluster-role-binding.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/cluster-role-binding.yaml -2025-10-23 04:18:02,341 DEBUG Copying assets/components/openshift-dns/dns/cluster-role.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/cluster-role.yaml -2025-10-23 04:18:02,341 INFO Restoring assets/components/openshift-dns/dns/configmap.yaml -2025-10-23 04:18:02,341 DEBUG Executing 'git restore assets/components/openshift-dns/dns/configmap.yaml' -2025-10-23 04:18:02,385 DEBUG Copying assets/components/openshift-dns/dns/daemonset.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/daemonset.yaml -2025-10-23 04:18:02,386 DEBUG Copying assets/components/openshift-dns/dns/namespace.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/namespace.yaml -2025-10-23 04:18:02,387 DEBUG Copying assets/components/openshift-dns/dns/service-account.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/service-account.yaml -2025-10-23 04:18:02,388 DEBUG Copying assets/components/openshift-dns/dns/service.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/service.yaml -2025-10-23 04:18:02,388 INFO Clearing directory assets/components/openshift-dns/node-resolver -2025-10-23 04:18:02,389 WARNING Ignoring components/openshift-dns/node-resolver/daemonset.yaml because it's created by processing daemonset.yaml.tmpl -2025-10-23 04:18:02,389 INFO Restoring assets/components/openshift-dns/node-resolver/daemonset.yaml.tmpl -2025-10-23 04:18:02,389 DEBUG Executing 'git restore assets/components/openshift-dns/node-resolver/daemonset.yaml.tmpl' -2025-10-23 04:18:02,429 DEBUG Copying assets/components/openshift-dns/node-resolver/service-account.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/node-resolver/service-account.yaml -2025-10-23 04:18:02,430 DEBUG Copying assets/components/openshift-dns/node-resolver/update-node-resolver.sh <- _output/staging/cluster-dns-operator/pkg/manifests/assets/node-resolver/update-node-resolver.sh -2025-10-23 04:18:02,431 INFO Clearing directory assets/components/openshift-router/ -2025-10-23 04:18:02,432 DEBUG Copying assets/components/openshift-router/cluster-role-binding.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/cluster-role-binding.yaml -2025-10-23 04:18:02,433 DEBUG Copying assets/components/openshift-router/cluster-role.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/cluster-role.yaml -2025-10-23 04:18:02,434 INFO Restoring assets/components/openshift-router/cluster-role-system-router.yaml -2025-10-23 04:18:02,434 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-system-router.yaml' -2025-10-23 04:18:02,474 INFO Restoring assets/components/openshift-router/configmap.yaml -2025-10-23 04:18:02,474 DEBUG Executing 'git restore assets/components/openshift-router/configmap.yaml' -2025-10-23 04:18:02,514 INFO Restoring assets/components/openshift-router/configmap-accesslog.yaml -2025-10-23 04:18:02,515 DEBUG Executing 'git restore assets/components/openshift-router/configmap-accesslog.yaml' -2025-10-23 04:18:02,555 DEBUG Copying assets/components/openshift-router/deployment.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/deployment.yaml -2025-10-23 04:18:02,556 DEBUG Copying assets/components/openshift-router/namespace.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/namespace.yaml -2025-10-23 04:18:02,557 DEBUG Copying assets/components/openshift-router/service-account.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-account.yaml -2025-10-23 04:18:02,558 DEBUG Copying assets/components/openshift-router/service-internal.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-internal.yaml -2025-10-23 04:18:02,559 DEBUG Copying assets/components/openshift-router/service-cloud.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-cloud.yaml -2025-10-23 04:18:02,560 INFO Restoring assets/components/openshift-router/serving-certificate.yaml -2025-10-23 04:18:02,560 DEBUG Executing 'git restore assets/components/openshift-router/serving-certificate.yaml' -2025-10-23 04:18:02,600 INFO Restoring assets/components/openshift-router/cluster-role-aggregate-edit-route.yaml -2025-10-23 04:18:02,600 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-aggregate-edit-route.yaml' -2025-10-23 04:18:02,642 INFO Restoring assets/components/openshift-router/cluster-role-aggregate-admin-route.yaml -2025-10-23 04:18:02,642 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-aggregate-admin-route.yaml' -2025-10-23 04:18:02,683 WARNING Ignoring components/openshift-router/ingress-class.yaml because gets generated during image rebase -2025-10-23 04:18:02,683 WARNING Ignoring components/ovn/ because it's not covered by rebase script yet -2025-10-23 04:18:02,683 INFO Clearing directory assets/components/service-ca/ -2025-10-23 04:18:02,684 DEBUG Copying assets/components/service-ca/clusterrole.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/clusterrole.yaml -2025-10-23 04:18:02,684 DEBUG Copying assets/components/service-ca/clusterrolebinding.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/clusterrolebinding.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/deployment.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/deployment.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/ns.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/ns.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/role.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/role.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/rolebinding.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/rolebinding.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/sa.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/sa.yaml -2025-10-23 04:18:02,685 DEBUG Copying assets/components/service-ca/signing-cabundle.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/signing-cabundle.yaml -2025-10-23 04:18:02,686 DEBUG Copying assets/components/service-ca/signing-secret.yaml <- _output/staging/service-ca-operator/bindata/v4.0.0/controller/signing-secret.yaml -2025-10-23 04:18:02,686 INFO Not clearing dir components/csi-snapshot-controller/ -2025-10-23 04:18:02,686 DEBUG Copying assets/components/csi-snapshot-controller/csi_controller_deployment.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/csi_controller_deployment.yaml -2025-10-23 04:18:02,687 DEBUG Copying assets/components/csi-snapshot-controller/serviceaccount.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/serviceaccount.yaml -2025-10-23 04:18:02,688 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshotclasses.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshotclasses.yaml -2025-10-23 04:18:02,689 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshotcontents.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshotcontents.yaml -2025-10-23 04:18:02,690 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshots.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshots.yaml -2025-10-23 04:18:02,691 DEBUG Copying assets/components/csi-snapshot-controller/05_operand_rbac.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/../manifests/05_operand_rbac.yaml -2025-10-23 04:18:02,692 WARNING Ignoring components/csi-snapshot-controller/clusterrole.yaml because extracted automatically from 05_operand_rbac.yaml -2025-10-23 04:18:02,692 WARNING Ignoring components/csi-snapshot-controller/clusterrolebinding.yaml because extracted automatically from 05_operand_rbac.yaml -2025-10-23 04:18:02,692 INFO Clearing directory assets/controllers/cluster-policy-controller/ -2025-10-23 04:18:02,693 DEBUG Copying assets/controllers/cluster-policy-controller/namespace-security-allocation-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-security-allocation-controller-clusterrole.yaml -2025-10-23 04:18:02,693 DEBUG Copying assets/controllers/cluster-policy-controller/namespace-security-allocation-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-security-allocation-controller-clusterrolebinding.yaml -2025-10-23 04:18:02,694 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-syncer-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-syncer-controller-clusterrole.yaml -2025-10-23 04:18:02,695 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-syncer-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-syncer-controller-clusterrolebinding.yaml -2025-10-23 04:18:02,696 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrole.yaml -2025-10-23 04:18:02,697 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrolebinding.yaml -2025-10-23 04:18:02,698 INFO Clearing directory assets/controllers/kube-apiserver/ -2025-10-23 04:18:02,698 DEBUG Copying assets/controllers/kube-apiserver/config-overrides.yaml <- _output/staging/cluster-kube-apiserver-operator/bindata/assets/config/config-overrides.yaml -2025-10-23 04:18:02,698 DEBUG Copying assets/controllers/kube-apiserver/defaultconfig.yaml <- _output/staging/cluster-kube-apiserver-operator/bindata/assets/config/defaultconfig.yaml -2025-10-23 04:18:02,698 INFO Clearing directory assets/controllers/kube-controller-manager/ -2025-10-23 04:18:02,699 DEBUG Copying assets/controllers/kube-controller-manager/defaultconfig.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/../config/defaultconfig.yaml -2025-10-23 04:18:02,700 DEBUG Copying assets/controllers/kube-controller-manager/csr_approver_clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/csr_approver_clusterrole.yaml -2025-10-23 04:18:02,700 DEBUG Copying assets/controllers/kube-controller-manager/csr_approver_clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/csr_approver_clusterrolebinding.yaml -2025-10-23 04:18:02,701 DEBUG Copying assets/controllers/kube-controller-manager/namespace-openshift-kube-controller-manager.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/ns.yaml -2025-10-23 04:18:02,702 INFO Clearing directory assets/controllers/openshift-default-scc-manager/ -2025-10-23 04:18:02,703 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-anyuid.yaml -2025-10-23 04:18:02,704 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostaccess.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostaccess.yaml -2025-10-23 04:18:02,705 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostmount-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostmount-anyuid.yaml -2025-10-23 04:18:02,706 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork-v2.yaml -2025-10-23 04:18:02,707 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork.yaml -2025-10-23 04:18:02,707 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-nonroot-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-nonroot-v2.yaml -2025-10-23 04:18:02,708 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-nonroot.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-nonroot.yaml -2025-10-23 04:18:02,709 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-privileged.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-privileged.yaml -2025-10-23 04:18:02,710 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v2.yaml -2025-10-23 04:18:02,711 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-restricted.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-restricted.yaml -2025-10-23 04:18:02,712 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v2.yaml -2025-10-23 04:18:02,712 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-anyuid.yaml -2025-10-23 04:18:02,713 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostaccess.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostaccess.yaml -2025-10-23 04:18:02,714 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostmount-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostmount-anyuid.yaml -2025-10-23 04:18:02,714 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostnetwork-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostnetwork-v2.yaml -2025-10-23 04:18:02,715 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostnetwork.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostnetwork.yaml -2025-10-23 04:18:02,716 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-nonroot-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-nonroot-v2.yaml -2025-10-23 04:18:02,716 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-nonroot.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-nonroot.yaml -2025-10-23 04:18:02,717 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-privileged.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-privileged.yaml -2025-10-23 04:18:02,718 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-restricted-v2.yaml -2025-10-23 04:18:02,719 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-restricted.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-restricted.yaml -2025-10-23 04:18:02,719 INFO Clearing directory assets/controllers/route-controller-manager/ -2025-10-23 04:18:02,720 DEBUG Copying assets/controllers/route-controller-manager/ns.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/ns.yaml -2025-10-23 04:18:02,720 DEBUG Copying assets/controllers/route-controller-manager/sa.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/sa.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-clusterrole.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-clusterrolebinding.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/informer-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/informer-clusterrolebinding.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/informer-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/informer-clusterrole.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrolebinding.yaml -2025-10-23 04:18:02,721 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrole.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ns.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ns.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-sa.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-sa.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-separate-sa-rolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-separate-sa-rolebinding.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-separate-sa-role.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-separate-sa-role.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-tokenreview-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-tokenreview-clusterrolebinding.yaml -2025-10-23 04:18:02,722 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-tokenreview-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-tokenreview-clusterrole.yaml -2025-10-23 04:18:02,723 INFO Restoring assets/controllers/route-controller-manager/route-controller-manager-authentication-reader-rolebinding.yaml -2025-10-23 04:18:02,723 DEBUG Executing 'git restore assets/controllers/route-controller-manager/route-controller-manager-authentication-reader-rolebinding.yaml' -2025-10-23 04:18:02,764 INFO Not clearing dir core/ -2025-10-23 04:18:02,764 DEBUG Copying assets/core/0000_50_cluster-openshift-controller-manager_00_namespace.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/ns.yaml -2025-10-23 04:18:02,764 DEBUG Copying assets/core/namespace-openshift-infra.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-openshift-infra.yaml -2025-10-23 04:18:02,765 WARNING Ignoring core/priority-class-openshift-user-critical.yaml because it's a priority class needed for oc debug node command - not available in any repo that rebase is using -2025-10-23 04:18:02,765 WARNING Ignoring core/securityv1-local-apiservice.yaml because it's a local API service for security API group, needed if OpenShift API server is not present -2025-10-23 04:18:02,765 DEBUG Copying assets/core/kubelet.yaml <- _output/staging/machine-config-operator/templates/master/01-master-kubelet/_base/files/kubelet.yaml -2025-10-23 04:18:02,766 WARNING Ignoring core/kubelet-client-ca.yaml because it's a template for ConfigMap processed during runtime -2025-10-23 04:18:02,766 INFO Clearing directory assets/crd/ -2025-10-23 04:18:02,766 DEBUG Copying assets/crd/0000_03_config-operator_01_securitycontextconstraints.crd.yaml <- _output/staging/release-manifests/0000_03_config-operator_01_securitycontextconstraints.crd.yaml -2025-10-23 04:18:02,767 DEBUG Copying assets/crd/0000_03_config-operator_02_rangeallocations.crd.yaml <- _output/staging/release-manifests/0000_03_config-operator_02_rangeallocations.crd.yaml -2025-10-23 04:18:02,768 DEBUG Copying assets/crd/storage_version_migration.crd.yaml <- _output/staging/release-manifests/0000_50_cluster-kube-storage-version-migrator-operator_01_storage_migration_crd.yaml -2025-10-23 04:18:02,769 DEBUG Copying assets/crd/route.crd.yaml <- _output/staging/api/route/v1/zz_generated.crd-manifests/routes.crd.yaml -2025-10-23 04:18:02,770 WARNING Ignoring release/ because it contains files generated during rebase procedure -2025-10-23 04:18:02,770 INFO Not clearing dir version/ -2025-10-23 04:18:02,771 WARNING Ignoring version/microshift-version.yaml because it's a template for ConfigMap processed during runtime -2025-10-23 04:18:02,771 WARNING Ignoring embed.go because it's a MicroShift specific Go file that embeds into a binary -2025-10-23 04:18:02,771 INFO Clearing directory assets/optional/operator-lifecycle-manager/ -2025-10-23 04:18:02,772 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-catalogsources.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-catalogsources.crd.yaml -2025-10-23 04:18:02,772 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-clusterserviceversions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-clusterserviceversions.crd.yaml -2025-10-23 04:18:02,773 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-installplans.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-installplans.crd.yaml -2025-10-23 04:18:02,773 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-namespace.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-namespace.yaml -2025-10-23 04:18:02,773 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-olmconfigs.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-olmconfigs.crd.yaml -2025-10-23 04:18:02,773 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operatorconditions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operatorconditions.crd.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operatorgroups.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operatorgroups.crd.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operators.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operators.crd.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-packageserver.pdb.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-packageserver.pdb.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-pprof-config.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-pprof-config.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-pprof-rbac.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-pprof-rbac.yaml -2025-10-23 04:18:02,774 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-pprof-secret.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-pprof-secret.yaml -2025-10-23 04:18:02,775 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-subscriptions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-subscriptions.crd.yaml -2025-10-23 04:18:02,775 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_01-networkpolicies.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_01-networkpolicies.yaml -2025-10-23 04:18:02,775 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_02-olm-operator.serviceaccount.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_02-olm-operator.serviceaccount.yaml -2025-10-23 04:18:02,775 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_03-olmconfig.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_03-olmconfig.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_03-services.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_03-services.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_07-olm-operator.deployment.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_07-olm-operator.deployment.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_08-catalog-operator.deployment.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_08-catalog-operator.deployment.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_09-aggregated.clusterrole.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_09-aggregated.clusterrole.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_13-operatorgroup-default.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_13-operatorgroup-default.yaml -2025-10-23 04:18:02,776 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_15-csv-viewer.rbac.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_15-csv-viewer.rbac.yaml -2025-10-23 04:18:02,777 DEBUG Copying assets/optional/operator-lifecycle-manager/image-references <- _output/staging/operator-framework-olm/microshift-manifests/image-references -2025-10-23 04:18:02,777 DEBUG Copying assets/optional/operator-lifecycle-manager/kustomization.yaml <- _output/staging/operator-framework-olm/microshift-manifests/kustomization.yaml -2025-10-23 04:18:02,777 WARNING Ignoring optional/operator-lifecycle-manager/kustomization.x86_64.yaml because gets generated during image rebase -2025-10-23 04:18:02,777 WARNING Ignoring optional/operator-lifecycle-manager/kustomization.aarch64.yaml because gets generated during image rebase -2025-10-23 04:18:02,777 WARNING Ignoring optional/operator-lifecycle-manager/release-olm-aarch64.json because gets generated during image rebase -2025-10-23 04:18:02,777 WARNING Ignoring optional/operator-lifecycle-manager/release-olm-x86_64.json because gets generated during image rebase -2025-10-23 04:18:02,777 WARNING Ignoring components/multus/ because they don't exist in upstream repository - only in microshift -2025-10-23 04:18:02,777 WARNING Ignoring optional/observability/ because they don't exist in upstream repository - only in microshift +2026-06-30 04:53:14,129 INFO Clearing directory assets/components/openshift-dns/dns/ +2026-06-30 04:53:14,130 DEBUG Copying assets/components/openshift-dns/dns/cluster-role-binding.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/cluster-role-binding.yaml +2026-06-30 04:53:14,132 DEBUG Copying assets/components/openshift-dns/dns/cluster-role.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/cluster-role.yaml +2026-06-30 04:53:14,133 INFO Restoring assets/components/openshift-dns/dns/configmap.yaml +2026-06-30 04:53:14,133 DEBUG Executing 'git restore assets/components/openshift-dns/dns/configmap.yaml' +2026-06-30 04:53:14,177 DEBUG Copying assets/components/openshift-dns/dns/daemonset.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/daemonset.yaml +2026-06-30 04:53:14,178 DEBUG Copying assets/components/openshift-dns/dns/namespace.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/namespace.yaml +2026-06-30 04:53:14,179 DEBUG Copying assets/components/openshift-dns/dns/service-account.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/service-account.yaml +2026-06-30 04:53:14,180 DEBUG Copying assets/components/openshift-dns/dns/service.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/dns/service.yaml +2026-06-30 04:53:14,181 WARNING Ignoring components/openshift-dns/dns/hosts-configmap-rolebinding.yaml because RBAC rules for hosts customization +2026-06-30 04:53:14,181 WARNING Ignoring components/openshift-dns/dns/hosts-configmap-role.yaml because RBAC rules for hosts customization +2026-06-30 04:53:14,181 INFO Clearing directory assets/components/openshift-dns/node-resolver +2026-06-30 04:53:14,181 WARNING Ignoring components/openshift-dns/node-resolver/daemonset.yaml because it's created by processing daemonset.yaml.tmpl +2026-06-30 04:53:14,181 INFO Restoring assets/components/openshift-dns/node-resolver/daemonset.yaml.tmpl +2026-06-30 04:53:14,181 DEBUG Executing 'git restore assets/components/openshift-dns/node-resolver/daemonset.yaml.tmpl' +2026-06-30 04:53:14,224 DEBUG Copying assets/components/openshift-dns/node-resolver/service-account.yaml <- _output/staging/cluster-dns-operator/pkg/manifests/assets/node-resolver/service-account.yaml +2026-06-30 04:53:14,225 DEBUG Copying assets/components/openshift-dns/node-resolver/update-node-resolver.sh <- _output/staging/cluster-dns-operator/pkg/manifests/assets/node-resolver/update-node-resolver.sh +2026-06-30 04:53:14,226 INFO Clearing directory assets/components/openshift-router/ +2026-06-30 04:53:14,227 DEBUG Copying assets/components/openshift-router/cluster-role-binding.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/cluster-role-binding.yaml +2026-06-30 04:53:14,228 DEBUG Copying assets/components/openshift-router/cluster-role.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/cluster-role.yaml +2026-06-30 04:53:14,229 INFO Restoring assets/components/openshift-router/cluster-role-system-router.yaml +2026-06-30 04:53:14,229 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-system-router.yaml' +2026-06-30 04:53:14,273 INFO Restoring assets/components/openshift-router/configmap.yaml +2026-06-30 04:53:14,273 DEBUG Executing 'git restore assets/components/openshift-router/configmap.yaml' +2026-06-30 04:53:14,317 INFO Restoring assets/components/openshift-router/configmap-accesslog.yaml +2026-06-30 04:53:14,318 DEBUG Executing 'git restore assets/components/openshift-router/configmap-accesslog.yaml' +2026-06-30 04:53:14,360 DEBUG Copying assets/components/openshift-router/deployment.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/deployment.yaml +2026-06-30 04:53:14,361 DEBUG Copying assets/components/openshift-router/namespace.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/namespace.yaml +2026-06-30 04:53:14,362 DEBUG Copying assets/components/openshift-router/service-account.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-account.yaml +2026-06-30 04:53:14,363 DEBUG Copying assets/components/openshift-router/service-internal.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-internal.yaml +2026-06-30 04:53:14,364 DEBUG Copying assets/components/openshift-router/service-cloud.yaml <- _output/staging/cluster-ingress-operator/pkg/manifests/assets/router/service-cloud.yaml +2026-06-30 04:53:14,365 INFO Restoring assets/components/openshift-router/serving-certificate.yaml +2026-06-30 04:53:14,365 DEBUG Executing 'git restore assets/components/openshift-router/serving-certificate.yaml' +2026-06-30 04:53:14,407 INFO Restoring assets/components/openshift-router/cluster-role-aggregate-edit-route.yaml +2026-06-30 04:53:14,408 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-aggregate-edit-route.yaml' +2026-06-30 04:53:14,450 INFO Restoring assets/components/openshift-router/cluster-role-aggregate-admin-route.yaml +2026-06-30 04:53:14,450 DEBUG Executing 'git restore assets/components/openshift-router/cluster-role-aggregate-admin-route.yaml' +2026-06-30 04:53:14,495 WARNING Ignoring components/openshift-router/ingress-class.yaml because gets generated during image rebase +2026-06-30 04:53:14,495 WARNING Ignoring components/ovn/ because it's not covered by rebase script yet +2026-06-30 04:53:14,495 INFO Clearing directory assets/components/service-ca/ +2026-06-30 04:53:14,496 DEBUG Copying assets/components/service-ca/clusterrole.yaml <- _output/staging/service-ca-operator/bindata/assets/clusterrole.yaml +2026-06-30 04:53:14,497 DEBUG Copying assets/components/service-ca/clusterrolebinding.yaml <- _output/staging/service-ca-operator/bindata/assets/clusterrolebinding.yaml +2026-06-30 04:53:14,498 DEBUG Copying assets/components/service-ca/deployment.yaml <- _output/staging/service-ca-operator/bindata/assets/deployment.yaml +2026-06-30 04:53:14,498 DEBUG Copying assets/components/service-ca/ns.yaml <- _output/staging/service-ca-operator/bindata/assets/ns.yaml +2026-06-30 04:53:14,499 DEBUG Copying assets/components/service-ca/role.yaml <- _output/staging/service-ca-operator/bindata/assets/role.yaml +2026-06-30 04:53:14,500 DEBUG Copying assets/components/service-ca/rolebinding.yaml <- _output/staging/service-ca-operator/bindata/assets/rolebinding.yaml +2026-06-30 04:53:14,501 DEBUG Copying assets/components/service-ca/sa.yaml <- _output/staging/service-ca-operator/bindata/assets/sa.yaml +2026-06-30 04:53:14,502 DEBUG Copying assets/components/service-ca/signing-cabundle.yaml <- _output/staging/service-ca-operator/bindata/assets/signing-cabundle.yaml +2026-06-30 04:53:14,502 DEBUG Copying assets/components/service-ca/signing-secret.yaml <- _output/staging/service-ca-operator/bindata/assets/signing-secret.yaml +2026-06-30 04:53:14,503 INFO Not clearing dir components/csi-snapshot-controller/ +2026-06-30 04:53:14,503 DEBUG Copying assets/components/csi-snapshot-controller/csi_controller_deployment.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/csi_controller_deployment.yaml +2026-06-30 04:53:14,504 DEBUG Copying assets/components/csi-snapshot-controller/serviceaccount.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/serviceaccount.yaml +2026-06-30 04:53:14,505 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshotclasses.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshotclasses.yaml +2026-06-30 04:53:14,506 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshotcontents.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshotcontents.yaml +2026-06-30 04:53:14,507 DEBUG Copying assets/components/csi-snapshot-controller/volumesnapshots.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/volumesnapshots.yaml +2026-06-30 04:53:14,508 DEBUG Copying assets/components/csi-snapshot-controller/05_operand_rbac.yaml <- _output/staging/cluster-csi-snapshot-controller-operator/assets/../manifests/05_operand_rbac.yaml +2026-06-30 04:53:14,509 WARNING Ignoring components/csi-snapshot-controller/clusterrole.yaml because extracted automatically from 05_operand_rbac.yaml +2026-06-30 04:53:14,509 WARNING Ignoring components/csi-snapshot-controller/clusterrolebinding.yaml because extracted automatically from 05_operand_rbac.yaml +2026-06-30 04:53:14,509 WARNING Ignoring components/csi-snapshot-controller/role.yaml because extracted automatically from 05_operand_rbac.yaml +2026-06-30 04:53:14,509 WARNING Ignoring components/csi-snapshot-controller/rolebinding.yaml because extracted automatically from 05_operand_rbac.yaml +2026-06-30 04:53:14,509 INFO Clearing directory assets/controllers/cluster-policy-controller/ +2026-06-30 04:53:14,510 DEBUG Copying assets/controllers/cluster-policy-controller/namespace-security-allocation-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-security-allocation-controller-clusterrole.yaml +2026-06-30 04:53:14,510 DEBUG Copying assets/controllers/cluster-policy-controller/namespace-security-allocation-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-security-allocation-controller-clusterrolebinding.yaml +2026-06-30 04:53:14,511 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-syncer-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-syncer-controller-clusterrole.yaml +2026-06-30 04:53:14,512 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-syncer-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-syncer-controller-clusterrolebinding.yaml +2026-06-30 04:53:14,513 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrole.yaml +2026-06-30 04:53:14,514 DEBUG Copying assets/controllers/cluster-policy-controller/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/podsecurity-admission-label-privileged-namespaces-syncer-controller-clusterrolebinding.yaml +2026-06-30 04:53:14,515 INFO Clearing directory assets/controllers/kube-apiserver/ +2026-06-30 04:53:14,515 DEBUG Copying assets/controllers/kube-apiserver/config-overrides.yaml <- _output/staging/cluster-kube-apiserver-operator/bindata/assets/config/config-overrides.yaml +2026-06-30 04:53:14,516 DEBUG Copying assets/controllers/kube-apiserver/defaultconfig.yaml <- _output/staging/cluster-kube-apiserver-operator/bindata/assets/config/defaultconfig.yaml +2026-06-30 04:53:14,517 INFO Clearing directory assets/controllers/kube-controller-manager/ +2026-06-30 04:53:14,517 DEBUG Copying assets/controllers/kube-controller-manager/defaultconfig.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/../config/defaultconfig.yaml +2026-06-30 04:53:14,518 DEBUG Copying assets/controllers/kube-controller-manager/csr_approver_clusterrole.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/csr_approver_clusterrole.yaml +2026-06-30 04:53:14,519 DEBUG Copying assets/controllers/kube-controller-manager/csr_approver_clusterrolebinding.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/csr_approver_clusterrolebinding.yaml +2026-06-30 04:53:14,520 DEBUG Copying assets/controllers/kube-controller-manager/namespace-openshift-kube-controller-manager.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/ns.yaml +2026-06-30 04:53:14,521 INFO Clearing directory assets/controllers/openshift-default-scc-manager/ +2026-06-30 04:53:14,522 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-anyuid.yaml +2026-06-30 04:53:14,523 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostaccess.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostaccess.yaml +2026-06-30 04:53:14,524 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostmount-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostmount-anyuid.yaml +2026-06-30 04:53:14,525 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork-v2.yaml +2026-06-30 04:53:14,525 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-hostnetwork.yaml +2026-06-30 04:53:14,526 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-nonroot-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-nonroot-v2.yaml +2026-06-30 04:53:14,527 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-nonroot.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-nonroot.yaml +2026-06-30 04:53:14,528 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-privileged.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-privileged.yaml +2026-06-30 04:53:14,528 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v2.yaml +2026-06-30 04:53:14,529 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v3.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-restricted-v3.yaml +2026-06-30 04:53:14,530 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_cr-scc-restricted.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_cr-scc-restricted.yaml +2026-06-30 04:53:14,531 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v2.yaml +2026-06-30 04:53:14,532 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v3.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_crb-systemauthenticated-scc-restricted-v3.yaml +2026-06-30 04:53:14,532 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-anyuid.yaml +2026-06-30 04:53:14,533 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostaccess.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostaccess.yaml +2026-06-30 04:53:14,534 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostmount-anyuid.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostmount-anyuid.yaml +2026-06-30 04:53:14,535 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostnetwork-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostnetwork-v2.yaml +2026-06-30 04:53:14,535 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-hostnetwork.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-hostnetwork.yaml +2026-06-30 04:53:14,536 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-nonroot-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-nonroot-v2.yaml +2026-06-30 04:53:14,537 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-nonroot.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-nonroot.yaml +2026-06-30 04:53:14,538 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-privileged.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-privileged.yaml +2026-06-30 04:53:14,539 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-restricted-v2.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-restricted-v2.yaml +2026-06-30 04:53:14,539 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-restricted-v3.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-restricted-v3.yaml +2026-06-30 04:53:14,540 DEBUG Copying assets/controllers/openshift-default-scc-manager/0000_20_kube-apiserver-operator_00_scc-restricted.yaml <- _output/staging/release-manifests/0000_20_kube-apiserver-operator_00_scc-restricted.yaml +2026-06-30 04:53:14,541 INFO Clearing directory assets/controllers/route-controller-manager/ +2026-06-30 04:53:14,542 DEBUG Copying assets/controllers/route-controller-manager/ns.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/ns.yaml +2026-06-30 04:53:14,543 DEBUG Copying assets/controllers/route-controller-manager/sa.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/sa.yaml +2026-06-30 04:53:14,543 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-clusterrole.yaml +2026-06-30 04:53:14,544 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-clusterrolebinding.yaml +2026-06-30 04:53:14,545 DEBUG Copying assets/controllers/route-controller-manager/informer-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/informer-clusterrolebinding.yaml +2026-06-30 04:53:14,546 DEBUG Copying assets/controllers/route-controller-manager/informer-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/informer-clusterrole.yaml +2026-06-30 04:53:14,547 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrolebinding.yaml +2026-06-30 04:53:14,547 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ingress-to-route-controller-clusterrole.yaml +2026-06-30 04:53:14,548 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-ns.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-ns.yaml +2026-06-30 04:53:14,549 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-sa.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-sa.yaml +2026-06-30 04:53:14,550 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-separate-sa-rolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-separate-sa-rolebinding.yaml +2026-06-30 04:53:14,551 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-separate-sa-role.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-separate-sa-role.yaml +2026-06-30 04:53:14,551 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-tokenreview-clusterrolebinding.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-tokenreview-clusterrolebinding.yaml +2026-06-30 04:53:14,552 DEBUG Copying assets/controllers/route-controller-manager/route-controller-manager-tokenreview-clusterrole.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/route-controller-manager-tokenreview-clusterrole.yaml +2026-06-30 04:53:14,553 INFO Restoring assets/controllers/route-controller-manager/route-controller-manager-authentication-reader-rolebinding.yaml +2026-06-30 04:53:14,553 DEBUG Executing 'git restore assets/controllers/route-controller-manager/route-controller-manager-authentication-reader-rolebinding.yaml' +2026-06-30 04:53:14,596 INFO Not clearing dir core/ +2026-06-30 04:53:14,597 DEBUG Copying assets/core/0000_50_cluster-openshift-controller-manager_00_namespace.yaml <- _output/staging/cluster-openshift-controller-manager-operator/bindata/assets/openshift-controller-manager/ns.yaml +2026-06-30 04:53:14,597 DEBUG Copying assets/core/namespace-openshift-infra.yaml <- _output/staging/cluster-kube-controller-manager-operator/bindata/assets/kube-controller-manager/namespace-openshift-infra.yaml +2026-06-30 04:53:14,598 WARNING Ignoring core/priority-class-openshift-user-critical.yaml because it's a priority class needed for oc debug node command - not available in any repo that rebase is using +2026-06-30 04:53:14,598 WARNING Ignoring core/securityv1-local-apiservice.yaml because it's a local API service for security API group, needed if OpenShift API server is not present +2026-06-30 04:53:14,598 DEBUG Copying assets/core/kubelet.yaml <- _output/staging/machine-config-operator/templates/master/01-master-kubelet/_base/files/kubelet.yaml +2026-06-30 04:53:14,599 WARNING Ignoring core/kubelet-client-ca.yaml because it's a template for ConfigMap processed during runtime +2026-06-30 04:53:14,599 INFO Clearing directory assets/crd/ +2026-06-30 04:53:14,599 DEBUG Copying assets/crd/0000_03_config-operator_01_securitycontextconstraints.crd.yaml <- _output/staging/release-manifests/0000_03_config-operator_01_securitycontextconstraints.crd.yaml +2026-06-30 04:53:14,600 DEBUG Copying assets/crd/0000_03_config-operator_02_rangeallocations.crd.yaml <- _output/staging/release-manifests/0000_03_config-operator_02_rangeallocations.crd.yaml +2026-06-30 04:53:14,601 DEBUG Copying assets/crd/storage_version_migration.crd.yaml <- _output/staging/release-manifests/0000_50_cluster-kube-storage-version-migrator-operator_01_storage_migration_crd.yaml +2026-06-30 04:53:14,602 DEBUG Copying assets/crd/route.crd.yaml <- _output/staging/api/route/v1/zz_generated.crd-manifests/routes.crd.yaml +2026-06-30 04:53:14,603 WARNING Ignoring release/ because it contains files generated during rebase procedure +2026-06-30 04:53:14,603 INFO Not clearing dir version/ +2026-06-30 04:53:14,603 WARNING Ignoring version/microshift-version.yaml because it's a template for ConfigMap processed during runtime +2026-06-30 04:53:14,603 WARNING Ignoring embed.go because it's a MicroShift specific Go file that embeds into a binary +2026-06-30 04:53:14,603 INFO Clearing directory assets/optional/operator-lifecycle-manager/ +2026-06-30 04:53:14,604 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-catalogsources.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-catalogsources.crd.yaml +2026-06-30 04:53:14,606 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-clusterserviceversions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-clusterserviceversions.crd.yaml +2026-06-30 04:53:14,609 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-installplans.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-installplans.crd.yaml +2026-06-30 04:53:14,610 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-namespace.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-namespace.yaml +2026-06-30 04:53:14,610 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-olmconfigs.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-olmconfigs.crd.yaml +2026-06-30 04:53:14,611 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operatorconditions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operatorconditions.crd.yaml +2026-06-30 04:53:14,612 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operatorgroups.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operatorgroups.crd.yaml +2026-06-30 04:53:14,613 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-operators.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-operators.crd.yaml +2026-06-30 04:53:14,614 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-packageserver.pdb.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-packageserver.pdb.yaml +2026-06-30 04:53:14,615 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_00-subscriptions.crd.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_00-subscriptions.crd.yaml +2026-06-30 04:53:14,617 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_01-networkpolicies.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_01-networkpolicies.yaml +2026-06-30 04:53:14,618 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_02-olm-operator.serviceaccount.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_02-olm-operator.serviceaccount.yaml +2026-06-30 04:53:14,618 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_03-olmconfig.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_03-olmconfig.yaml +2026-06-30 04:53:14,619 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_03-services.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_03-services.yaml +2026-06-30 04:53:14,620 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_07-olm-operator.deployment.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_07-olm-operator.deployment.yaml +2026-06-30 04:53:14,621 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_08-catalog-operator.deployment.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_08-catalog-operator.deployment.yaml +2026-06-30 04:53:14,622 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_09-aggregated.clusterrole.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_09-aggregated.clusterrole.yaml +2026-06-30 04:53:14,623 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_13-operatorgroup-default.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_13-operatorgroup-default.yaml +2026-06-30 04:53:14,623 DEBUG Copying assets/optional/operator-lifecycle-manager/0000_50_olm_15-csv-viewer.rbac.yaml <- _output/staging/operator-framework-olm/microshift-manifests/0000_50_olm_15-csv-viewer.rbac.yaml +2026-06-30 04:53:14,624 DEBUG Copying assets/optional/operator-lifecycle-manager/image-references <- _output/staging/operator-framework-olm/microshift-manifests/image-references +2026-06-30 04:53:14,624 DEBUG Copying assets/optional/operator-lifecycle-manager/kustomization.yaml <- _output/staging/operator-framework-olm/microshift-manifests/kustomization.yaml +2026-06-30 04:53:14,625 WARNING Ignoring optional/operator-lifecycle-manager/kustomization.x86_64.yaml because gets generated during image rebase +2026-06-30 04:53:14,625 WARNING Ignoring optional/operator-lifecycle-manager/kustomization.aarch64.yaml because gets generated during image rebase +2026-06-30 04:53:14,625 WARNING Ignoring optional/operator-lifecycle-manager/release-olm-aarch64.json because gets generated during image rebase +2026-06-30 04:53:14,625 WARNING Ignoring optional/operator-lifecycle-manager/release-olm-x86_64.json because gets generated during image rebase +2026-06-30 04:53:14,625 WARNING Ignoring components/multus/ because they don't exist in upstream repository - only in microshift +2026-06-30 04:53:14,625 WARNING Ignoring optional/observability/ because they don't exist in upstream repository - only in microshift Modifying OpenShift manifests /go/src/github.com/openshift/microshift /go/src/github.com/openshift/microshift/_output/staging /go/src/github.com/openshift/microshift Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/010-ingress-deployment-clientCA.patch @@ -744,103 +749,28 @@ Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manif /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/011-ingress-deployment-access-logging.patch - Patch applied Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/012-ingress-class.patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/012-ingress-class.patch - Patch applied +Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-configmap.patch +Patch was already applied +Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-daemonset.patch +/go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-daemonset.patch - Patch applied +Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-hosts-configmap-role.patch +/go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-hosts-configmap-role.patch - Patch applied +Checking patch /go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-hosts-configmap-rolebinding.patch +/go/src/github.com/openshift/microshift/scripts/auto-rebase/manifests_patches/020-dns-hosts-configmap-rolebinding.patch - Patch applied /go/src/github.com/openshift/microshift/_output/staging /go/src/github.com/openshift/microshift Rebasing operator-lifecycle-manager manifests Rebasing Multus images ## Committing changes to assets and pkg/assets -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 a4b9f77c5] update manifests - 11 files changed, 49 insertions(+), 47 deletions(-) +[rebase-release-4.22-4.22.0-0.nightly-2026-06-25-210812_amd64-2026-06-25_arm64-2026-06-29 25510bfcf] update manifests + 3 files changed, 3 insertions(+), 3 deletions(-) Rebasing Makefile ## Committing changes to buildfiles -[rebase-release-4.21-4.21.0-0.nightly-2025-10-22-123727_amd64-2025-10-22_arm64-2025-10-22 bbc290cbe] update buildfiles - 2 files changed, 2 insertions(+), 2 deletions(-) +[rebase-release-4.22-4.22.0-0.nightly-2026-06-25-210812_amd64-2026-06-25_arm64-2026-06-29 1e08b45c1] update buildfiles + 1 file changed, 1 insertion(+), 1 deletion(-) # Removing staging directory ================================================== rebase_ai_model_serving.sh: -Rebasing AI Model Serving for MicroShift to registry.redhat.io/rhoai/odh-operator-bundle:v2.22 +Rebasing AI Model Serving for MicroShift to registry.redhat.io/rhoai/odh-operator-bundle:v2.25 Fetching RHOAI CSV Fetching RHOAI manifests -Updating last_rebase_ai_model_serving.sh -Updating rebase_job_entrypoint.sh -Copying manifests from staging dir to assets/ -2025-10-23 04:18:23,086 INFO Not clearing dir optional/ai-model-serving/ -2025-10-23 04:18:23,086 WARNING Ignoring optional/ai-model-serving/release-ai-model-serving-x86_64.json because Release info file -2025-10-23 04:18:23,086 INFO Not clearing dir optional/ai-model-serving/kserve/ -2025-10-23 04:18:23,086 WARNING Ignoring optional/ai-model-serving/kserve/kustomization.yaml because MicroShift specific overrides -2025-10-23 04:18:23,086 WARNING Ignoring optional/ai-model-serving/kserve/inferenceservice-config-microshift-patch.yaml because MicroShift specific overrides -2025-10-23 04:18:23,086 WARNING Ignoring optional/ai-model-serving/kserve/namespace.yaml because MicroShift specific overrides -2025-10-23 04:18:23,086 INFO Clearing directory assets/optional/ai-model-serving/kserve/overlays/odh/ -2025-10-23 04:18:23,087 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/inferenceservice-config-patch.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/inferenceservice-config-patch.yaml -2025-10-23 04:18:23,087 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/kustomization.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/kustomization.yaml -2025-10-23 04:18:23,087 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/params.env <- _output/staging/rhoai/operator/kserve/overlays/odh/params.env -2025-10-23 04:18:23,087 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/params.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/params.yaml -2025-10-23 04:18:23,087 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/remove-namespace.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/remove-namespace.yaml -2025-10-23 04:18:23,088 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/set-resources-manager-patch.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/set-resources-manager-patch.yaml -2025-10-23 04:18:23,088 DEBUG Copying assets/optional/ai-model-serving/kserve/overlays/odh/user-cluster-roles.yaml <- _output/staging/rhoai/operator/kserve/overlays/odh/user-cluster-roles.yaml -2025-10-23 04:18:23,088 INFO Clearing directory assets/optional/ai-model-serving/kserve/default/ -2025-10-23 04:18:23,089 DEBUG Copying assets/optional/ai-model-serving/kserve/default/cainjection_conversion_webhook.yaml <- _output/staging/rhoai/operator/kserve/default/cainjection_conversion_webhook.yaml -2025-10-23 04:18:23,089 DEBUG Copying assets/optional/ai-model-serving/kserve/default/clusterservingruntime_validatingwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/clusterservingruntime_validatingwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,089 DEBUG Copying assets/optional/ai-model-serving/kserve/default/inferencegraph_validatingwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/inferencegraph_validatingwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,089 DEBUG Copying assets/optional/ai-model-serving/kserve/default/isvc_mutatingwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/isvc_mutatingwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,089 DEBUG Copying assets/optional/ai-model-serving/kserve/default/isvc_validatingwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/isvc_validatingwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,090 DEBUG Copying assets/optional/ai-model-serving/kserve/default/kustomization.yaml <- _output/staging/rhoai/operator/kserve/default/kustomization.yaml -2025-10-23 04:18:23,090 DEBUG Copying assets/optional/ai-model-serving/kserve/default/localmodel_manager_image_patch.yaml <- _output/staging/rhoai/operator/kserve/default/localmodel_manager_image_patch.yaml -2025-10-23 04:18:23,090 DEBUG Copying assets/optional/ai-model-serving/kserve/default/manager_auth_proxy_patch.yaml <- _output/staging/rhoai/operator/kserve/default/manager_auth_proxy_patch.yaml -2025-10-23 04:18:23,090 DEBUG Copying assets/optional/ai-model-serving/kserve/default/manager_image_patch.yaml <- _output/staging/rhoai/operator/kserve/default/manager_image_patch.yaml -2025-10-23 04:18:23,090 DEBUG Copying assets/optional/ai-model-serving/kserve/default/manager_prometheus_metrics_patch.yaml <- _output/staging/rhoai/operator/kserve/default/manager_prometheus_metrics_patch.yaml -2025-10-23 04:18:23,091 DEBUG Copying assets/optional/ai-model-serving/kserve/default/manager_resources_patch.yaml <- _output/staging/rhoai/operator/kserve/default/manager_resources_patch.yaml -2025-10-23 04:18:23,091 DEBUG Copying assets/optional/ai-model-serving/kserve/default/network-policies.yaml <- _output/staging/rhoai/operator/kserve/default/network-policies.yaml -2025-10-23 04:18:23,091 DEBUG Copying assets/optional/ai-model-serving/kserve/default/servingruntime_validationwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/servingruntime_validationwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,091 DEBUG Copying assets/optional/ai-model-serving/kserve/default/svc_webhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/svc_webhook_cainjection_patch.yaml -2025-10-23 04:18:23,091 DEBUG Copying assets/optional/ai-model-serving/kserve/default/trainedmodel_validatingwebhook_cainjection_patch.yaml <- _output/staging/rhoai/operator/kserve/default/trainedmodel_validatingwebhook_cainjection_patch.yaml -2025-10-23 04:18:23,091 INFO Clearing directory assets/optional/ai-model-serving/kserve/crd/ -2025-10-23 04:18:23,092 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/kustomization.yaml <- _output/staging/rhoai/operator/kserve/crd/kustomization.yaml -2025-10-23 04:18:23,093 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_clusterlocalmodels.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_clusterlocalmodels.yaml -2025-10-23 04:18:23,093 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_clusterservingruntimes.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_clusterservingruntimes.yaml -2025-10-23 04:18:23,093 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_clusterstoragecontainers.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_clusterstoragecontainers.yaml -2025-10-23 04:18:23,093 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_inferencegraphs.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_inferencegraphs.yaml -2025-10-23 04:18:23,093 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_inferenceservices.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_inferenceservices.yaml -2025-10-23 04:18:23,094 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_localmodelnodegroups.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_localmodelnodegroups.yaml -2025-10-23 04:18:23,094 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_servingruntimes.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_servingruntimes.yaml -2025-10-23 04:18:23,095 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/full/serving.kserve.io_trainedmodels.yaml <- _output/staging/rhoai/operator/kserve/crd/full/serving.kserve.io_trainedmodels.yaml -2025-10-23 04:18:23,095 DEBUG Copying assets/optional/ai-model-serving/kserve/crd/patches/protocol.yaml <- _output/staging/rhoai/operator/kserve/crd/patches/protocol.yaml -2025-10-23 04:18:23,095 INFO Clearing directory assets/optional/ai-model-serving/kserve/configmap/ -2025-10-23 04:18:23,095 DEBUG Copying assets/optional/ai-model-serving/kserve/configmap/kustomization.yaml <- _output/staging/rhoai/operator/kserve/configmap/kustomization.yaml -2025-10-23 04:18:23,096 DEBUG Copying assets/optional/ai-model-serving/kserve/configmap/inferenceservice.yaml <- _output/staging/rhoai/operator/kserve/configmap/inferenceservice.yaml -2025-10-23 04:18:23,096 INFO Clearing directory assets/optional/ai-model-serving/kserve/rbac/ -2025-10-23 04:18:23,097 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/auth_proxy_role_binding.yaml <- _output/staging/rhoai/operator/kserve/rbac/auth_proxy_role_binding.yaml -2025-10-23 04:18:23,097 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/auth_proxy_role.yaml <- _output/staging/rhoai/operator/kserve/rbac/auth_proxy_role.yaml -2025-10-23 04:18:23,097 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/auth_proxy_service.yaml <- _output/staging/rhoai/operator/kserve/rbac/auth_proxy_service.yaml -2025-10-23 04:18:23,097 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/kustomization.yaml <- _output/staging/rhoai/operator/kserve/rbac/kustomization.yaml -2025-10-23 04:18:23,097 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/leader_election_role_binding.yaml <- _output/staging/rhoai/operator/kserve/rbac/leader_election_role_binding.yaml -2025-10-23 04:18:23,098 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/leader_election_role.yaml <- _output/staging/rhoai/operator/kserve/rbac/leader_election_role.yaml -2025-10-23 04:18:23,098 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/role_binding.yaml <- _output/staging/rhoai/operator/kserve/rbac/role_binding.yaml -2025-10-23 04:18:23,098 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/role.yaml <- _output/staging/rhoai/operator/kserve/rbac/role.yaml -2025-10-23 04:18:23,098 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/service_account.yaml <- _output/staging/rhoai/operator/kserve/rbac/service_account.yaml -2025-10-23 04:18:23,098 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/localmodel/role_binding.yaml <- _output/staging/rhoai/operator/kserve/rbac/localmodel/role_binding.yaml -2025-10-23 04:18:23,099 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/localmodel/role.yaml <- _output/staging/rhoai/operator/kserve/rbac/localmodel/role.yaml -2025-10-23 04:18:23,099 DEBUG Copying assets/optional/ai-model-serving/kserve/rbac/localmodel/service_account.yaml <- _output/staging/rhoai/operator/kserve/rbac/localmodel/service_account.yaml -2025-10-23 04:18:23,099 INFO Clearing directory assets/optional/ai-model-serving/kserve/manager/ -2025-10-23 04:18:23,099 DEBUG Copying assets/optional/ai-model-serving/kserve/manager/kustomization.yaml <- _output/staging/rhoai/operator/kserve/manager/kustomization.yaml -2025-10-23 04:18:23,100 DEBUG Copying assets/optional/ai-model-serving/kserve/manager/manager.yaml <- _output/staging/rhoai/operator/kserve/manager/manager.yaml -2025-10-23 04:18:23,100 DEBUG Copying assets/optional/ai-model-serving/kserve/manager/service.yaml <- _output/staging/rhoai/operator/kserve/manager/service.yaml -2025-10-23 04:18:23,100 INFO Clearing directory assets/optional/ai-model-serving/kserve/webhook/ -2025-10-23 04:18:23,100 DEBUG Copying assets/optional/ai-model-serving/kserve/webhook/kustomization.yaml <- _output/staging/rhoai/operator/kserve/webhook/kustomization.yaml -2025-10-23 04:18:23,100 DEBUG Copying assets/optional/ai-model-serving/kserve/webhook/manifests.yaml <- _output/staging/rhoai/operator/kserve/webhook/manifests.yaml -2025-10-23 04:18:23,101 DEBUG Copying assets/optional/ai-model-serving/kserve/webhook/service.yaml <- _output/staging/rhoai/operator/kserve/webhook/service.yaml -2025-10-23 04:18:23,101 INFO Clearing directory assets/optional/ai-model-serving/runtimes/ -2025-10-23 04:18:23,101 INFO Restoring assets/optional/ai-model-serving/runtimes/kustomization.yaml -2025-10-23 04:18:23,101 DEBUG Executing 'git restore assets/optional/ai-model-serving/runtimes/kustomization.yaml' -2025-10-23 04:18:23,140 WARNING Ignoring optional/ai-model-serving/runtimes/kustomization.x86_64.yaml because Generated during rebase -2025-10-23 04:18:23,140 DEBUG Copying assets/optional/ai-model-serving/runtimes/caikit-standalone.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/caikit-standalone-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/caikit-tgis.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/caikit-tgis-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/hf-detector.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/hf-detector-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/ovms-kserve.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/ovms-kserve-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/vllm-cuda.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/vllm-cuda-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/vllm-gaudi.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/vllm-gaudi-template.yaml -2025-10-23 04:18:23,141 DEBUG Copying assets/optional/ai-model-serving/runtimes/vllm-rocm.yaml <- _output/staging/rhoai/operator/modelcontroller/runtimes/vllm-rocm-template.yaml -Initializing release.json file -Dropping template containers from ServingRuntimes and changing them to ClusterServingRuntimes -Creating ClusterServingRuntimes images kustomization -No changes to assets/ or last_rebase_ai_model_serving.sh -Removing staging directory +error: unable to extract layer sha256:f3352ed1ace0ab6405fcd2d97e7ff089a3d3182e0a4f81cc4d08f1f86325c65b from registry.redhat.io/rhoai/odh-rhel9-operator@sha256:bc5cb772ff859730805f8ac0d9514752782dd55412b65b1a2726621125f071d6: unexpected EOF