All notable changes to this project will be documented in this file.
0.25.2 (2024-08-09)
- add backoff to operator retry mechanism (#650) (52c97fd)
- network allows for core netpols (#652) (e9b69e8)
- allow for extra keycloak gateway usage with client certs (#648) (7b1c474)
- deps: update dependency defenseunicorns/uds-common to v0.11.1 (#647) (768aa1c)
- deps: update dependency defenseunicorns/uds-common to v0.11.2 (#653) (f7d1ce8)
- deps: update grafana helm chart to v8.4.3 (#660) (81c7af0)
- deps: update grafana to 11.1.3 ([#607](defenseunicorns#607)) (7b343ac)
- deps: update neuvector to 5.3.4 (#606) (526bff4)
- deps: update pepr to 0.33.0 (#588) (6eee8f0)
- update identity config to 0.6.0 (#661) (469fed8)
0.25.1 (2024-08-06)
- add debug logs for istio injection logic (#602) (9075436)
- add support for public clients and disabling standard auth flow (#630) (38151d7)
- deps: update dependency defenseunicorns/uds-common to v0.11.0 (#617) (997cf37)
- deps: update dependency weaveworks/eksctl to v0.188.0 (#623) (3081044)
- deps: update uds to v0.14.0 (#612) (7fe927e)
- update codeowners (#637) (eec5017)
0.25.0 (2024-08-02)
- change metric server to optional (defenseunicorns#611)
- account for keycloak HA ports (#619) (434f349)
- add google saml to slim-dev (#613) (f2164e1)
- address network policy generation inter-namespace bug (#564) (9b14c2c)
- reference root scope (#633) (5de6915)
- change metric server to optional (defenseunicorns#611) (bc2d673)
- deps: update dependency defenseunicorns/uds-common to v0.9.0 (#592) (44ea2d7)
- deps: update dependency weaveworks/eksctl to v0.187.0 (#539) (9002a94)
- deps: update githubactions (#553) (2a9e29a)
- deps: update grafana curl image to v8.9.0 (#596) (64f9408)
- deps: update grafana helm chart to v8.3.6 (#594) (1f2005b)
- deps: update istio to v1.22.3 (#580) (7aba89e)
- deps: update lula to v0.4.4 (#615) (b02b305)
- deps: update neuvector-updater/curl to v8.9.0 (#597) (b4bd660)
- deps: update promtail configmap-reload to v0.13.1 (#608) (d98bbae)
- deps: update promtail helm chart to v6.16.4 (#574) (bf9f65c)
- deps: update to identity-config 0.5.2 (#635) (6474d16)
- deps: update uds cli to v0.13.1 (#569) (4339c89)
- deps: update zarf to v0.36.1 (#562) (058cfb3)
- disable telemetry/analytics for loki/grafana (#601) (ad785bc)
- update zarf to new repo location, 0.37.0 (#631) (29f9fd0)
0.24.1 (2024-07-22)
- ci: snapshot release publish, passthrough test on upgrade (#575) (d4afe00)
- ci: workflow permissions (cacf1b5)
- only allow istio gateways to set x509 client certificate header (#572) (5c62279)
- sso: delete orphaned SSO secrets (#578) (5a6b9ef)
- unicorn flavor proxy image reference (#590) (db081fa)
- update monitor mutation to not overwrite explicitly defined scrape class (#582) (7e550d3)
- deps: update grafana chart + sidecar image (#567) (85b6de4)
- deps: update pepr to v0.32.7 (#556) (e594f13)
- deps: update uds-identity-config to v0.5.1 (#591) (b9c5bd3)
- deps: update uds-k3d to v0.8.0 (#581) (fab8919)
- loki: default query settings, config as secret (#579) (5fa889c)
- oscal: begin integration of composed oscal with validations (#496) (047fd30)
0.24.0 (2024-07-12)
- set istio passthrough gateway as optional component (defenseunicorns#547)
- add unicorn flavor to uds-core (#507) (a412581)
- added standalone dns service for loki (#548) (e2efdf9)
- enable authservice integration (#201) (1d4df64)
- set istio passthrough gateway as optional component (defenseunicorns#547) (e1cab61)
- update to using default scrapeclass for tls config (#517) (258bb6b)
- decouple
devMode
and postgres egress (#554) (1a98779) - grafana logout not working in some environments (#559) (ccb9d9e)
- initial creation of child logging (#533) (00a5140)
- podmonitor mTLS mutations (#566) (eb613e1)
- add util function for purging orphans (#565) (e84229a)
- allow istio proxy injection in zarf ignored namespaces (defenseunicorns#513) (8921b58)
- deps: update githubactions upload-artifact to v4.3.4 (#543) (20889f2)
- deps: update grafana helm chart to v8.3.2 (#542) (8ec260c)
- deps: update pepr dependencies (jest, uds-common) (#537) (547c0bf)
- deps: update promtail helm chart to v6.16.3 (#538) (48b3fea)
0.23.0 (2024-07-04)
- remove emulated gitlab endpoints from keycloak (#483)
- docs: re-ordered small paragraphs, clarified wording, and added links to tech homepages (#531) (6b2b46b)
- docs: removed double-link which broke the markdown formatting in pr template (#532) (f41ced4)
- docs: uds-config.yaml example in k3d-slim-dev README (#530) (2e1c53e)
- operator retries and error logging (#511) (cae5aab)
- deps: update checkout action to latest sha (#481) (c6f0137)
- deps: update dependency weaveworks/eksctl to v0.183.0 (#499) (9cb8e4d)
- deps: update grafana to 11.1.0 (#380) (499058a)
- deps: update istio to v1.22.2 (#512) (dcdadb4)
- deps: update jest to v29.1.5 (#485) (9c392b9)
- deps: update neuvector to 5.3.3 (#467) (261057d)
- deps: update pepr to 0.32.2 (#473) (ab4bee9)
- deps: update pepr to 0.32.3 (#494) (2e28897)
- deps: update pepr to 0.32.6 (#516) (a9d3eec)
- deps: update promtail to 3.1.0 (#335) (4457fce)
- deps: update uds to v0.12.0 (#521) (8e587ff)
- deps: update uds-common tasks to 0.6.1 (#498) (4aa6e33)
- deps: update zarf to v0.35.0 (#490) (86957cf)
- docs linting changes (#505) (0fe2015)
- remove emulated gitlab endpoints from keycloak (#483) (495960c)
- update docs for group auth and readme for docs site (#540) (ace7041)
0.22.2 (2024-06-13)
- check if exemption exists before cleanup (#468) (735288b)
- pepr operator derived netpol name collisions (#480) (de60e25)
- typo in comment (#462) (582b1f4)
- deps: update checkout to v4.1.7 (#478) (e91a0a3)
- deps: update githubactions to v4.1.3 (#471) (2a9f44d)
- deps: update uds to v0.11.1 (#472) (12fd798)
- deps: update uds to v0.11.2 (#479) (f967f9a)
- deps: update velero to v1.30.2 (#476) (89bbda9)
0.22.1 (2024-06-06)
- add saml configuration to k3d standard bundle (#425) (15b41d7)
- de-duplicate renovate matches (#435) (4f9dbbb)
- default keycloak realm envs (#455) (3a2b48f)
- exemption race conditions (#407) (d1b3b56)
- integrated docs (#431) (72238fa)
- keycloak schema for package cr (#436) (e32ce9a)
- networkpolicy for keycloak smtp egress (4059954)
- nightly testing eks config architecture (#452) (a0bbd1f)
- remove deprecated registry login and add env setup (#443) (ca6b76f)
- remove go mod (#441) (0de9693)
- remove no-tea and update uds version (#446) (434844b)
- use updated k3s (#426) (1da1c49)
- add checks before killing pods when updating istio annotations (#457) (a62f9a0)
- add debug logs to save logs for easier searching (#430) (319101b)
- add velero csi plugin (#424) (c7e49e9)
- deps: update githubactions (#413) (ebd834e)
- deps: update istio to v1.22.1 (#405) (ad4b861)
- deps: update jest to v29.1.4 (#438) (c3ecc8b)
- deps: update keycloak to v0.4.4 (#460) (936f40b)
- deps: update keycloak to v0.4.5 (#461) (3592012)
- deps: update keycloak to v24.0.5 (#453) (6b0c6fc)
- deps: update keycloak to v24.0.5 (#454) (89911f0)
- deps: update pepr (#419) (d8f0309)
- deps: update pepr to v0.4.5 (#447) (f1dba17)
- deps: update prometheus-stack (#422) (a96193e)
- deps: update uds-common to v0.4.4 (#442) (bf6debd)
- deps: update uds-k3d to v0.7.0 (#428) (23b59a2)
- deps: update velero (#408) (ffbefda)
- deps: update velero (#440) (4b1a3ea)
- deps: update velero to v6.6.0 (#456) (aff37c1)
- deps: update zarf to v0.34.0 (#434) (9badf9d)
0.22.0 (2024-05-22)
- add
expose
service entry for internal cluster traffic (#356) (1bde4cc) - add reconciliation retries for CRs (#423) (424b57b)
- uds common renovate config (#391) (035786c)
- uds core docs (#414) (a35ca7b)
- mismatched exemption/policy for DropAllCapabilities (#384) (d8ec278)
- pepr mutation annotation overwrite (#385) (6e56b2a)
- renovate config grouping, test-infra (#411) (05fd407)
- renovate pepr comment (#410) (a825388)
- deps: update keycloak (#390) (3e82c4e)
- deps: update keycloak to v24.0.4 (#397) (c0420ea)
- deps: update keycloak to v24.0.4 (#402) (e454576)
- deps: update neuvector to v9.4 (#381) (20d4170)
- deps: update pepr to 0.31.0 (#360) (fbd61ea)
- deps: update prometheus-stack (#348) (49cb11a)
- deps: update prometheus-stack (#392) (2e656f5)
- deps: update uds to v0.10.4 (#228) (1750b23)
- deps: update uds-k3d to v0.6.0 (#398) (288f009)
- deps: update velero (#350) (e7cb33e)
- deps: update zarf to v0.33.2 (#394) (201a37b)
0.21.1 (2024-05-02)
0.21.0 (2024-04-30)
- add debug logging to endpointslice watch (#359) (da3eb5a)
- deps: update grafana to v7.3.9 (#353) (4a70f40)
- deps: update istio to v1.21.2 (#258) (51c6540)
- deps: update keycloak (#349) (2ef1813)
- deps: update keycloak to v0.4.2 (#375) (b0bb8e4)
- deps: update zarf to v0.33.1 (#368) (296e547)
- move api service watch to reconcile (#362) (1822bca)
- refactor promtail extraScrapeConfigs into scrapeConfigs (#367) (2220272)
- trigger eks nightly when related files are updated (#366) (6d6e4e0)
0.20.0 (2024-04-20)
- add keycloak sso realm values (#352) (74436ea)
- add saml and attribute/mapper support for keycloak in uds pepr operator (#328) (c53d4ee)
- enable sso for neuvector (#351) (597353e)
- keycloak PVC customization (#341) (f8eae2a)
- deps: update grafana (#339) (52e6c1b)
- deps: update neuvector (#333) (010e287)
- deps: update pepr (#340) (e71ba4a)
- deps: update prometheus-stack (#301) (143eca3)
- deps: update to keycloak 24 (#336) (1153ba0)
- deps: update uds-identity-config to 0.4.1 (#355) (8485931)
0.19.0 (2024-04-12)
- drop path normalization to MERGE_SLASHES to allow apps to handle encoded slashes (#330) (26e965f)
- loki bucket configuration service_account and namespace (#332) (9518634)
- deps: update grafana (#257) (c98e566)
- deps: update metrics-server (#298) (691fd87)
- deps: update pepr (#324) (2ef0f96)
- deps: update pepr to v0.28.7 (#321) (e7206bb)
- deps: update promtail (#74) (6a112b5)
- deps: update zarf to v0.32.6 (#282) (443426d)
- deps: update zarf to v0.33.0 (#325) (f2a2a66)
- update codeowners (#338) (c419574)
0.18.0 (2024-03-29)
- add kubeapi egress for neuvector enforcer (#291) (87fc886)
- pepr ironbank renovate update (#299) (287e40d)
- release workflow k3d image (#316) (e7835e0)
- unwanted exemption deletions (#290) (50b0cd4)
- add debug output to release workflow (#285) (5f96865)
- deps: update dependency defenseunicorns/uds-common to v0.3.6 (#261) (1b5398b)
- deps: update githubactions (#242) (1eb2e2c)
- deps: update pepr to v0.28.6 (#300) (86b43e4)
- deps: update prometheus-stack (#190) (f9a605a)
- deps: update uds-k3d to v0.6.0 (#240) (6a26523)
- deps: update velero (#260) (f352008)
- main: release 0.18.0 (#286) (40e6b7b)
- support headless keycloak admin user (#307) (a0e51b6)
0.17.0 (2024-03-22)
- add keycloak to dev bundle and rename (#262) (f9b905c)
- registration robot check form id (#269) (c6419b9)
- sticky sessions for keycloak in ha (#281) (5ccd557)
- align mutation annotations (#268) (f18ad4d)
- deps: update loki (#209) (03ca499)
- deps: update pepr to v0.28.6 (#254) (54ef7de)
- deps: update zarf to v0.32.5 (#243) (ee93612)
- typo fix in README.md (#280) (f9727e0)
0.16.1 (2024-03-16)
0.16.0 (2024-03-15)
- add flavor to pepr build task (#238) (29bf8a3)
- deps: update grafana (#144) (6987927)
- deps: update neuvector (#73) (50f6c90)
- test artifacts before publish (#198) (9732f32)
0.15.1 (2024-03-11)
0.15.0 (2024-03-07)
- deps: update dependency defenseunicorns/uds-common to v0.2.2 (#232) (083ae0c)
- deps: update githubactions to de90cc6 (#215) (f79eed0)
0.14.5 (2024-03-06)
0.14.4 (2024-03-05)
0.14.3 (2024-03-05)
0.14.2 (2024-03-04)
- basic validations for packages (#208) (9eba3af)
- keycloak volume permissions, UI update (#223) (4454d3e)
- kubeapi netpol generation now also includes the ip from the kubernetes service (#219) (0a83d02)
0.14.1 (2024-03-04)
0.14.0 (2024-03-04)
- deps: update dependency defenseunicorns/uds-common to v0.2.1 (#205) (1b01407)
- deps: update githubactions to v19 (#204) (d65acd4)
- deps: update loki to v5.43.3 (#199) (40f1554)
- deps: update metrics-server (#123) (fb25a97)
0.13.1 (2024-02-21)
0.13.0 (2024-02-20)
- add security.md (#189) (bf7c1d2)
- deps: update githubactions (#179) (7797e25)
- deps: update githubactions to ebc4d7e (#183) (77357e7)
- deps: update githubactions to v3 (#181) (70c5ddf)
- deps: update istio to v1.20.3 (#163) (e45de0e)
- deps: update loki to v5.43.0 (#180) (bab5f7a)
- deps: update loki to v5.43.1 (#182) (6cc5fc7)
- deps: update loki to v5.43.2 (#191) (0ec0cd4)
- deps: update pepr to v0.25.0 (#164) (e7b8212)
- deps: update uds to v0.9.0 (#173) (b91a90d)
- deps: update zarf to v0.32.3 (#155) (2f0a1a7)
- support deselection of metrics-server (#193) (289a0fe)
0.12.0 (2024-02-09)
- deps: pin dependencies (#79) (bfab11e)
- remove retry-action action on registry1 docker login (#160) (eea0c93)
0.11.1 (2024-02-08)
0.11.0 (2024-02-07)
- deps: update grafana to v7.2.5 (#136) (a271270)
- deps: update grafana to v7.3.0 (#142) (5e960c0)
- deps: update loki (#131) (61250b0)
- deps: update pepr to v0.24.1 (#134) (6474a1c)
- deps: update prometheus-stack (#128) (625622a)
- deps: update uds to v0.8.1 (#141) (fa79065)
- deps: update zarf to v0.32.2 (#133) (91502c6)
- readme updates & use UDS CLI for zarf (#137) (21de0ce)
- renovate updates (#140) (b71a013)
0.10.0 (2024-01-26)
0.9.2 (2024-01-24)
- deps: update grafana (#80) (ccb2c12)
- deps: update loki (#72) (98134bb)
- deps: update pepr (#116) (bfa7352)
- deps: update prometheus-stack (#81) (19bedb6)
- deps: update uds to v0.6.2 (#107) (7b7220e)
- deps: update uds-k3d to v0.3.1 (#89) (5d54cd1)
- refactor ci for releases to remove certain artifacts (#125) (c08a062)
0.9.1 (2024-01-22)
0.9.0 (2024-01-21)
0.8.1 (2024-01-18)
0.8.0 (2024-01-16)
- adding unit test for registerExemptions() (#105) (5e71fcf)
- deps: update pepr to v0.22.2 (#104) (0555353)
0.7.4 (2024-01-13)
0.7.3 (2024-01-11)
- deps: update uds to v0.5.3, zarf to v0.32.1, and uds-k3d to 0.3.0 (#77) (596f9d8)
- open the aperture for pr workflow triggering (#90) (d8a72f2)
- simplify promtail values for scrape configs (#94) (6c2513b)
0.7.2 (2024-01-09)
- kick off ci (1afc3a4)
0.7.1 (2024-01-08)
0.7.0 (2024-01-05)
0.6.2 (2023-12-11)
- add minio deploy time bundle variable override definitions (#58) (ca28e7b)
- refactor validate.yaml file name and task name (#62) (92a04ea)
0.6.1 (2023-12-07)
0.6.0 (2023-12-05)
0.5.0 (2023-11-19)
0.4.1 (2023-11-17)
0.4.0 (2023-11-16)
0.3.0 (2023-11-15)
0.2.0 (2023-11-13)
- add pepr capability for istio + jobs (#12) (c32a703)
- embed tls certs in istio package (#32) (fb04fee)
0.1.3 (2023-11-10)
0.1.2 (2023-11-09)
0.1.1 (2023-11-09)
- Add istio and preliminary ci (#3) (fbd7453)
- add prometheus-stack (monitoring) capability (#2) (e438ab6)
- release-please integration (#25) (bf3c53b)
- add commit lint workflow (#19) (776a632)
- remove version from neuvector zarf.yaml (#11) (fbc8d51)
- update release please extra-files to be explicit (#26) (23f4999)
PRE RELEASE
- Initial CHANGELOG.md
- CODEOWNERS
- CONTRIBUTING.md
- DEVELOPMENT_MAINTENANCE.md
- LICENSE
- READEME.md
- zarf.yaml