Security
Fixed
- Fixed cilium network policy, added
cluster entity to egress rule.
Changed
- Remove push to app catalog: default, control plane, app collections
- Switched to use recommended
proxy_server over auth_server in tbot config.
Changed
- Switched API version from the
HorizontalPodAutoscaler from autoscaling/v2beta1 to autoscaling/v1.
Changed
- Change app catalog from
giantswarm to operations. - Update to cloudnative-pg v1.23.1 (chart v0.21.2).
- Increase default CPU requests to 250Mi.
Added
- Add Helm labels and annotations for easy CRD adoption in the future.
Changed
- Adapt Kyverno Policy Reporter CiliumNetworkPolicy to allow for DNS resolution of the
kyverno-ui service. - Disable AdmissionReports and ClusterAdmissionReports cleanup jobs.
Changed
- Update Falco CiliumNetworkPolicy to allow communication with Falco Sidekick.
- changed: README.md to include more information.
- Upgrading to the
v0.9.16 version.
removed
- Removed kubernetes version from the chart
Added
- Add toleration for
node.cluster.x-k8s.io/uninitialized and node-role.kubernetes.io/control-plane taint. - Add node affinity to prefer scheduling pods to control-plane nodes.
- Initial release containing cloudnative-pg v1.22.2 (chart v0.20.2).