Highlights
Flux v2.9.6 is a patch release that stops helm-controller from reapplying chart CRDs on every upgrade when server-side apply is enabled, and recovers HelmReleases left with a drifted Ready=Unknown condition after a failed status patch. source-controller normalizes Azure Blob listing ETags so unchanged containers are no longer re-downloaded on every reconcile, and evicts stale Helm repository index entries from the cache so repositories with frequently changing indexes no longer fail with "Cache is full". kustomize-controller extends SOPS decryption error redaction to spec.postBuild.substituteFrom values, so substituted secrets echoed back in API validation errors are masked out of status conditions and events, and adds the opt-in DisableCommitStatusEvent feature gate. Users are encouraged to upgrade for the best experience.
ℹ️ Please follow the Upgrade Procedure for Flux v2.7+ for a smooth upgrade from Flux v2.6 to the latest version.
Fixes:
- Stop reapplying chart CRDs on upgrades when using server-side apply with the default
Createpolicy (helm-controller) - Recover HelmReleases stranded with a drifted
Ready=Unknowncondition after a failed status patch (helm-controller) - Ignore
NotFoundwhen deleting the HelmChart (helm-controller) - Normalize Azure Blob listing ETags so unchanged containers are not re-downloaded on every reconcile (source-controller)
- Evict stale Helm repository index entries from the cache to avoid "Cache is full" errors (source-controller)
- Extend SOPS decryption error redaction to
spec.postBuild.substituteFromvalues (kustomize-controller)
Improvements:
- Add the opt-in
DisableCommitStatusEventfeature gate (kustomize-controller)
Components changelog
CLI changelog
- [release/v2.9.x] Format reproducible created timestamp in UTC by @fluxcdbot in #6081
- Update toolkit components by @fluxcdbot in #6097
Full Changelog: v2.9.5...v2.9.6