artifacthub helm/cilium/cilium 1.13.0-rc2

latest releases: 1.13.16, 1.14.11, 1.15.5...
18 months ago

We are pleased to release Cilium v1.13.0-rc2.

Summary of Changes

Major Changes:

Minor Changes:

  • Add --source-ranges option to cilium bpf lb list (#19705, @julianwiedmann)
  • ctmap: add support for GC of DSR orphaned entries (#21626, @jibi)
  • Enable icmp error replies with enable-pmtu-discovery flag (#21825, @nnbu)
  • Enable operator operation without kubernetes. (#21344, @pruiz)
  • Fix behavior where packets leave node if there are no backends (#21539, @michaelasp)
  • helm: Add validation for Ingress Controller (#21550, @sayboras)
  • Helm: optionally use less permissive linux capabilities. (#21506, @jonkerj)
  • helm: Remove chart fields planned for removal in 1.12 (#21881, @my-git9)
  • hubble/metrics: Add source_ip/destination_ip labels to contextLabels (#21322, @chancez)
  • hubble/metrics: Add workload-name and app options to sourceContext and destinationContext (#21320, @chancez)
  • hubble: add support for filtering by trace ID (#21551, @rolinh)
  • hubble: Extract traceIDs into exemplars in HTTP metrics (#21599, @chancez)
  • ingress: Follow-up items for shared LB mode (#21493, @sayboras)
  • ipam: Support custom owner IPs in CRD IPAM pool (#21379, @llhhbc)
  • makefile: add a new target to run 'golangci-lint run --fix' (#21547, @aspsk)
  • Prepend Envoy resources with CEC namespace and name (#21500, @pippolo84)
  • Sign container images with cosign (#21739, @sandipanpanda)
  • The CNI configuration file is now written only after the agent has successfully started up. Configuring a custom CNI configuration file is now simpler and more reliable. See the docs for more details. (#21375, @squeed)
  • XDP NodePort Acceleration can also be used for clusters in tunnel mode. (#21364, @julianwiedmann)

Bugfixes:

  • Add missing inner IP header in ICMP error-reply packet (#21234, @nnbu)
  • alibabacloud: Fix create ENI failure: The specified parameter "SecondaryPrivateIpAddressCount" is not valid (#21828, @jaffcheng)
  • bpf: always track egress gateway connections (#21499, @jibi)
  • bugtool: Fix pprof default ports (#21497, @pippolo84)
  • Fix agent deadlock caused by frequent kube-apiserver IP recycling (#21629, @joestringer)
  • Fix bug in AlibabaCloud where vSwitches could not be matched (#21635, @haozhangami)
  • Fix bug that can cause some traffic covered by an L7 policy to be dropped when IPsec is enabled on EKS. (#21595, @pchaigno)
  • Fix overlapping/duplicate PodCIDR allocation when nodes are added while operator is down (#21526, @dylandreimerink)
  • Fixed CCNP garbage collection (#21394, @zuzzas)
  • Fixes a deadlock that can be exposed in high-churn clusters when Pods are deleted rapidly. (#21771, @squeed)
  • Fixes cilium startup on certain AWS-VPC clusters. (#21444, @squeed)
  • ipam/crd: Fix ENI leak due to miscounting of empty interface slots (#21800, @jaffcheng)
  • ipcache: Fix metadata access from CIDR allocation (#21565, @joestringer)
  • nodeinit: Move kubelet version check to expected branch (#21772, @dctrwatson)

CI Changes:

Misc Changes:

Don't miss a new cilium release

NewReleases is sending notifications on new releases.