Changelog v1.38.0
The following components will be restarted during the update from the Deckhouse 1.32
- Kubernetes Control Plane components
- log-shipper
- openvpn
- Prometheus
- user-authn
Component version updates
- log-shipper/vector:
0.24.2
- dex:
2.35
Major changes
- The new admission-policy-engine module allows you to use security policies in the cluster namespace according to the Kubernetes Pod Security Standards. To apply a policy, it is enough to set a label
security.deckhouse.io/pod-policy=<POLICY_NAME>
to the corresponding namespace. - Code refactoring has been conducted to prepare for storing Deckhouse module configurations in separate custom resources instead of using the
deckhouse
ConfigMap. The feature is expected to be introduced in the next release. - Validation of the publicDomainTemplate parameter has been added.
- Fixes have been made to the
Kubernetes / Ingress Nginx Controllers
andKubernetes / Ingress Nginx Controller Details
Grafana dashboards. - Automatic volume expansion in Prometheus has been removed because it failed to work as expected.
- The
tlsMode
parameter has been removed in the istio module.
See CHANGELOG v1.38 for more details.